A source sends an unexpected attachment.
Do not open it on a primary device. Verify the sender through another channel, scan and isolate the file, disable active content, and preserve the original securely if legitimate.
Find the record. Test the claim. Know what is held about you.
Public beta · Reviewed 15 Aug 2026A default-deny research doctrine for lawful access, necessity, proportionality, personal-data minimization, source protection, secure handling, fair publication, and correction.
Define the decision, harm, institution, or verifiable claim at issue. Exclude curiosity, retaliation, humiliation, and identity exposure from scope.
Use public or authorized access only. Respect sealed records, authentication, license terms, court orders, and statutory restrictions.
Collect the least sensitive data needed. Generalize location, redact identifiers, separate contact information, and avoid re-identification across unrelated systems.
Use unique passwords, multifactor authentication, patched devices, phishing resistance, protected backups, restricted sharing, and cautious handling of unknown files and macros.
Require multiple consistent identifiers and record uncertainty. Never convert similarity or proximity into accusation.
Separate necessary proof from unnecessary PII, offer a meaningful right of reply, review legal and safety risks, and avoid live location or operational details that create danger.
Publish a correction route, date material changes, preserve the evidentiary record appropriately, and delete sensitive working data when its justified retention period ends.
Generated locally in your browser. CTI does not receive the file.
Do not open it on a primary device. Verify the sender through another channel, scan and isolate the file, disable active content, and preserve the original securely if legitimate.
Pause. Test necessity, public interest, alternatives, location generalization, consent, and likely downstream harm before any sharing.
Stop collection, preserve relevant logs, rotate credentials from a clean device, revoke sessions, enable MFA, and obtain specialist help when risk is material.
Preserve the response, test its documents and timeline with the same rigor, correct factual error promptly, and distinguish unresolved disagreement from established contradiction.
A home address in a filing may help distinguish entities, but publication may be unnecessary. Cite the filing and state the relationship without reproducing the address.
Document conditions, not vulnerable people. Avoid faces, plates, live routines, private conversations, and precise locations unless essential and ethically justified.
Inspect and remove author names, comments, revision history, hidden sheets, geolocation, and embedded identifiers from copies intended for public release.
Authority labels distinguish government sources from independent guidance. Links were reviewed 15 Aug 2026; procedures and law can change.
Practical account, phishing, password, MFA, and software-update guidance.
Risk-based framework for identifying and managing privacy risk.
Digital-security training for journalists; adapt recommendations to the actual threat model.
Operational and digital-safety materials for investigative work.