|
| 1 | +# Institution Pilot Playbook |
| 2 | + |
| 3 | +## 30-day process |
| 4 | + |
| 5 | +### Week 1 — Setup |
| 6 | +- Confirm official payment, admissions, visa, housing, testing, and agent-verification resources. |
| 7 | +- Name counselor/staff owners for escalations. |
| 8 | +- Review privacy language and decide whether Firebase is configured or local/sample mode is used. |
| 9 | +- Define pilot success and stopping criteria. |
| 10 | + |
| 11 | +### Week 2 — Awareness launch |
| 12 | +- Share the checker link with a limited student group. |
| 13 | +- Run a short awareness session using synthetic examples from the case library. |
| 14 | +- Explain that the product detects risk indicators, not certainty. |
| 15 | +- Remind students never to paste passports, card numbers, passwords, OTPs, or private document images. |
| 16 | + |
| 17 | +### Week 3 — Review and adjust |
| 18 | +- Review anonymized dashboard categories, channels, claimed authorities, and feedback trends. |
| 19 | +- Identify top false-positive and missed-risk categories. |
| 20 | +- Update warnings and resource links if counselors find confusing wording. |
| 21 | +- Do not collect raw messages through informal channels. |
| 22 | + |
| 23 | +### Week 4 — Export and decision |
| 24 | +- Export the Markdown report from the dashboard. |
| 25 | +- Compare success metrics to pilot goals. |
| 26 | +- Decide whether to continue, revise, expand, or stop. |
| 27 | + |
| 28 | +## Data collected |
| 29 | +- Redacted report payloads only after consent. |
| 30 | +- Risk score, level, context, platform, country/region, and claimed authority if provided. |
| 31 | +- Anonymous feedback fields: helpfulness, official verification status, calibration, optional category. |
| 32 | + |
| 33 | +## Data never collected by default |
| 34 | +- Raw suspicious messages. |
| 35 | +- Passport scans, student IDs, bank/card details, passwords, OTPs, screenshots with personal data, or legal case files. |
| 36 | +- Certainty labels that claim a person or organization committed fraud. |
| 37 | + |
| 38 | +## Awareness session structure |
| 39 | +- Start with common cross-border pressure tactics. |
| 40 | +- Show synthetic examples and resource packs. |
| 41 | +- Demonstrate official verification scripts. |
| 42 | +- Close with escalation contacts and “pause before paying/clicking/sharing” guidance. |
| 43 | + |
| 44 | +## Exporting reports |
| 45 | +- Open Dashboard. |
| 46 | +- Select sample/local/Firebase source mode and date range. |
| 47 | +- Confirm the source label is accurate. |
| 48 | +- Click “Download Markdown report.” |
| 49 | + |
| 50 | +## Success/failure criteria |
| 51 | +- Continue if students and counselors find next steps clear, privacy concerns are manageable, and benchmark checks remain stable. |
| 52 | +- Revise if false positives cluster around legitimate deadlines or payment reminders. |
| 53 | +- Stop or narrow scope if users misunderstand scores as certainty or if privacy expectations cannot be met. |
0 commit comments