web
You’re offline. This is a read only version of the page.
close
Skip to main content

Notifications

Announcements

No record found.

Community site session details

Community site session details

Session Id :
Microsoft Dynamics CRM (Archived)

Sensitive data (Credit Cards, Social Security, etc) Searching and Filtering

(0) ShareShare
ReportReport
Posted on by

We are migrating to a new CRM Online instance and one of our obstacles is how best to prevent accidental entry of things like credit card numbers by sales team members into fields the data should not be. Typically happens in notes fields, tracked emails, etc.

Is anyone aware of tools or plugins that make this kind of searching/alerting possible or other means to help mitigate the issue other than strong policies and staff training.

Thanks!

*This post is locked for comments

I have the same question (0)
  • Community Member Profile Picture
    on at

    When you say "to prevent accidental entry of things like credit card numbers by sales team members into fields the data should not be" I hope you mean:

    "to prevent accidental entry of things like credit card numbers by sales team members into CRM, or anywhere near it at all". You should never be saving this kind of sensitive data into a database that has no encryption.

  • Community Member Profile Picture
    on at

    That is a much better phrasing, but yes we are trying to prevent that kind of entry. Removing numerical keys from the keyboard is the next step.

  • Community Member Profile Picture
    on at

    Good point Adam but stating that this kind of sensitive data should never be stored in an non-encrypted DB is one thing (via written corporate policy), but how to does IT police such a statement when users can easily circumvent the policy without Admin knowledge.

  • Community Member Profile Picture
    on at

    I agree, but I wanted to make sure we were answering the right question before we started. I wonder if you could use some scripts to look in obvious text fields (description, notes, whatever the label on them might say - long text fields in general), and use something like regex expressions to find sequences of (for example) more than four digits, with or without spaces but no other characters (to distinguish from dates, for example). Run checks when the data is filled in, rather than later. Don't just prevent the save, but audit the non-compliance (save some metadata somewhere about who triggered the rule and when. DON'T include the offending string!!!)

  • Suggested answer
    Community Member Profile Picture
    on at

    To avoid this issue, try to use field level security, so it can only available for certain users/teams not all users/teams.

  • Community Member Profile Picture
    on at

    Good suggestions. Saving information about the non-compliance is key for follow-up enforcement.

    Coming from on-prem, where we could query the database itself, I'm still learning how the online version works. It seems like there isn't any existing solution to regex through the backend data for offending entries.

Under review

Thank you for your reply! To ensure a great experience for everyone, your content is awaiting approval by our Community Managers. Please check back later.

Helpful resources

Quick Links

Responsible AI policies

As AI tools become more common, we’re introducing a Responsible AI Use…

Neeraj Kumar – Community Spotlight

We are honored to recognize Neeraj Kumar as our Community Spotlight honoree for…

Leaderboard > 🔒一 Microsoft Dynamics CRM (Archived)

#1
SA-08121319-0 Profile Picture

SA-08121319-0 4

#1
Calum MacFarlane Profile Picture

Calum MacFarlane 4

#3
Alex Fun Wei Jie Profile Picture

Alex Fun Wei Jie 2

Last 30 days Overall leaderboard

Featured topics

Product updates

Dynamics 365 release plans