Managing sensitive customer information within a support ticket system requires a delicate balance between accessibility and security. The SupportCandy Private Credentials plugin is designed specifically for support teams using the SupportCandy helpdesk, allowing customers to securely share login credentials, API keys, or other private data directly within a ticket without exposing that information to unauthorized eyes or storing it in plain text within your database.
Key Features
- Secure Credential Fields: Create dedicated, encrypted fields within your support tickets specifically for sensitive information like usernames, passwords, and private tokens.
- Role-Based Visibility: Control exactly who can view the submitted credentials. Ensure that only authorized support agents or administrators can decrypt and see the data, keeping it hidden from lower-level staff or unauthorized users.
- Automatic Masking: Sensitive data is automatically masked in the ticket interface, preventing accidental exposure during screen sharing or casual viewing of the ticket conversation.
- Secure Storage: Credentials are handled with enhanced security protocols, ensuring that sensitive data is not stored in plain text, which significantly reduces the risk of data leaks if your database is ever accessed.
- Seamless Integration: Designed as an extension for SupportCandy, the plugin integrates directly into your existing ticket submission forms and agent dashboard, requiring no complex workflow changes.
- Audit Logging: Maintain accountability by tracking who has accessed or viewed the private credentials, providing a clear trail for security compliance and internal reviews.
Use Cases and Who It’s For
This plugin is an essential tool for any business that provides technical support, web development services, or managed IT solutions. If your support team frequently needs to log into a customer’s website, server, or software account to troubleshoot issues, you are likely dealing with highly sensitive credentials daily.
Without a dedicated, secure method for handling these credentials, support teams often resort to insecure practices like sending passwords via email, chat, or standard ticket comments. This exposes your customers to significant security risks. SupportCandy Private Credentials is for agencies, hosting providers, and SaaS companies that prioritize customer trust and need to demonstrate a commitment to data privacy and security compliance.
Setup and How It Works
- Installation: Install and activate the plugin alongside your existing SupportCandy helpdesk setup.
- Field Configuration: Navigate to the SupportCandy settings to create a new custom field and select the “Private Credential” field type.
- Define Permissions: Configure the field settings to specify which user roles (e.g., Administrator, Senior Support Agent) have the permission to view the decrypted content.
- Customer Submission: When a customer opens a ticket, they can use the secure field to input their credentials. Once submitted, the data is immediately encrypted.
- Agent Access: Authorized agents can view the credentials by clicking a “View” or “Reveal” button within the ticket interface, which will log the access event for security purposes.
Why Security Matters for Your Helpdesk
In today’s digital landscape, a single data breach can devastate your company’s reputation. When customers provide you with their login credentials, they are placing a high level of trust in your organization. By using a specialized tool like SupportCandy Private Credentials, you are not just adding a feature; you are implementing a security layer that protects your clients from credential theft and protects your business from the liability associated with mishandled sensitive data. This professional approach to support operations differentiates your brand as one that takes security seriously, fostering long-term client relationships built on reliability and safety.
