Without a card
Listing channels, direct messages and group chats, and resolving a message link someone pasted into the conversation. These calls are still audited.
Connector · Slack
PrivacyFence connects an AI assistant to Slack with your own user token, so it sees the channels, direct messages and group chats you can see, and nothing more. There is no bot to invite. The assistant can find conversations straight away; it reads messages only after you have looked at them, and it sends nothing until you approve.
What the assistant can do
Every Slack tool has a gate fixed in code. The Tools reference lists each one.
Listing channels, direct messages and group chats, and resolving a message link someone pasted into the conversation. These calls are still audited.
A channel's recent history, a thread's replies, and message search. You see exactly which messages would be released, then allow or deny.
Sending a message to a channel or direct message, and starting a group chat. The card shows the conversation and the full text before anything is posted.
Personal data
Before a reviewed read is shown to you, PrivacyFence scans the message text locally for likely personal data in English, German and Hungarian: IBANs, card numbers, ID and tax numbers, salary information and similar. Sender names and channel names are not scanned. Email addresses and phone numbers are deliberately not flagged, because nearly every signature has them.
A match sends the read to a card even if an always-allow rule covers the channel, highlights what was found, and asks for a second confirmation. The audit log records the category, never the matched text.
The privacy filter can also withhold whole kinds of Slack data from the assistant: message content, thread content, people's identities, and the channel, direct-message and group-chat lists. Each is set in Settings → Privacy Filter → Slack.
Routine requests
An always-allow rule lets matching requests run without a card, and each one is still audited. For Slack, a rule can trust:
Reading, or posting to, the channels and people you list. A search runs without a card only when every result is from one of them.
A search whose results all come from public channels.
One-to-one direct messages. This matches any one-to-one conversation, not only notes to yourself.
Group direct messages, and starting one.
Likely personal data in a read still goes to a card. Every scope is in the scope catalogue.
Set it up
Next
Follow a read and a write through PrivacyFence, card by card.