Ask HN: How do startups restrict employees from accessing private user data?
I'm not talking about data that's sensitive enough that it falls under a specific jurisdiction (credit cards, SSNs, etc.) - more data like private messages between friends, photos, and so on, which users consider to be private.
In the very early days of a startup, you don't really worry about this because you don't have the time, and you trust your cofounders enough to not snoop around on messages/documents/etc. that the few users you have consider to be private.
But as the employee count hits the double digits and keeps going up, you probably shouldn't trust everyone to that level? Yet in most early stage startups, all employees have command line access to production application, admin panels, databases, etc.
How do you solve this problem? Do you add restrictions to which trusted employees can access production services? Do you encrypt the user data you store?
If there are any insights about how larger companies have handled this, I'd love to hear it. Surely at Instagram, OkCupid, Facebook, etc. the average employee can't read the private messages of their ex-partner?