Data handling & security

Security starts with what Salesbroom does not know.

Years of working with customer-provided business datasets have led us toward a simple security principle: the safest customer information is information Salesbroom does not need to receive.

Context matters

Public data. Private context.

The business information Salesbroom typically cleans is public information: company names, business addresses, executive names, titles, business email addresses and phone numbers. The sensitivity comes from the dataset itself—who assembled it, which records they selected, how those records are grouped, and what they intend to do with them. That context can reveal valuable business strategy even when every individual data point is publicly available.

The data can be public while the dataset is still business-sensitive.

Anonymous project datasets

The records and the rules. Not the ownership context.

Customers provide Salesbroom working datasets without ownership information or information that creates an association between the data and a particular customer, user or business purpose. Salesbroom needs the records and the project rules. We do not need the customer’s identity embedded in the working dataset.

Minimum-context principle

Send only what the work requires.

Before a dataset is transferred, unnecessary customer-identifying and project-identifying information should be removed. If a field is not required to deduplicate or standardize the data, it generally does not need to be included. The goal is simple: give Salesbroom what is required to perform the work—and no more.

  • Internal notes
  • Customer-specific scoring
  • Sales assignments
  • Campaign information
  • Proprietary classifications
  • Opportunity data
  • Internal strategy fields

Anonymous project IDs

Separate identity from execution.

Every Salesbroom project is assigned a randomly generated project ID. That project ID is the bridge between two separate systems: the customer relationship, project management and billing records on one side; and the anonymous working dataset used to perform the data work on the other.

Customer relationship

Project management, scope, billing record and delivery instructions.

Working dataset

The records and project rules required to perform the work—without customer ownership embedded in the file.

A working file can simply be identified as “Project 847261.” The project-management system knows which customer Project 847261 belongs to. The working dataset does not need to.

The dataset knows the project.
It does not need to know the customer.

This separation lets Salesbroom connect the work to the correct project manager, scope, billing record and delivery instructions without embedding customer ownership information inside the dataset itself.

Encrypted at rest

Protected during the project.

Customer datasets are encrypted at rest throughout the period in which Salesbroom is working on the project. Encryption protects stored project data while Salesbroom needs access to perform the work.

No customer-data repository

Salesbroom does not store customer datasets.

Project files exist only for the period required to perform the work, complete quality control, deliver the project and address agreed project closeout requirements. When the work is complete, the completed dataset is returned to the customer and the Salesbroom working copy is destroyed. Ordinary project-management and billing records may remain; the customer dataset does not.

Clean the data. Return the data. Destroy the working copy.
01

Customer provides an anonymous working dataset.

02

Salesbroom performs the defined work.

03

The dataset remains encrypted at rest during the project.

04

The completed dataset is returned to the customer.

05

Salesbroom’s working copy is destroyed.

A clear boundary

No production-system access required for most projects.

Salesbroom is designed primarily around spreadsheets, CSV files and other exported datasets. For most Dedupe and Standardize projects, Salesbroom does not need direct access to the customer’s CRM, marketing platform or other production system. The customer exports the required data. Salesbroom performs the work on the project file. The completed file is returned. This creates a clear boundary between Salesbroom and the customer’s production environment.

Human project management

Requirements stay attached to a person.

Every Salesbroom project has a human project manager. The project manager works with the customer to define project scope, dedupe or standardization rules, required fields, exceptions, output format, delivery and customer-specific security requirements.

Software, automation and AI

Tools support the work.

Salesbroom may use software, automation and AI-assisted workflows to perform data work efficiently and consistently. These tools support the work. They do not replace project-level accountability. If a customer has restrictions involving particular software, external systems, AI use or data-processing methods, those requirements should be defined before the project begins.

Enterprise requirements

Define them before transfer.

Enterprise customers may have additional requirements involving confidentiality, file transfer, encryption, access, approved systems, AI use, retention, deletion or vendor-security procedures. These requirements can be addressed during project scoping. The important point is to define them before the production dataset is transferred.

The Salesbroom security model

Four operating principles.

Remove the ownership context.

The working dataset does not need to identify the customer or explain the business purpose behind the records.

Minimize the data.

Provide only the fields required to perform the work.

Encrypt the dataset while we have it.

Project data is encrypted at rest during the project.

Do not retain customer data.

When the work is complete, the data is returned and the working copy is destroyed.

If we do not need it, do not send it.
The safest customer information is information Salesbroom never needs to receive.

Questions about data handling?

Talk with a Salesbroom project manager before sending a production dataset. We can define the appropriate workflow, transfer method and project requirements first.

Get an Estimate