Works with the AI tools you already use

    Claude CodeClaude CodeCursorCursorCodex CLICodex CLIGitHub CopilotGitHub CopilotGemini CLIGemini CLI+20 more

    Crisis PR Holding Statement Drafter

    1

    Instantly produces professional, empathetic, and legally cautious holding statements. Crucial for companies facing sudden negative press, data breaches, or service outages.

    $5

    Secure checkout via Stripe

    30-day refund guarantee

    Converts to your local currency at checkout

    0 installsSecurity scanned
    Crisis PR Holding Statement Drafter

    Crisis PR Holding Statement Drafter

    Example session with this skill installed

    • Incident Type: Suspected Customer Data Breach / Unauthorized System Access - Company Name & Industry: FinVault (Fintech / Mobile Banking) - Known Facts & Impact: An unauthorized third party accessed a staging database containing contact details and hashed records for roughly 45,000 users. No transaction records or payment card data appear compromised at this time.
    • Immediate Actions Taken: Isolated affected servers, engaged independent forensic cybersecurity specialists, and notified relevant regulatory oversight bodies.
    • Target Audience / Channels: Tech media, active account holders, and corporate blog/status hub.
    • Read your context and instructions
    • Compiled the crisis pr holding

    1. Executive Summary & Strategy Note

    Risk Assessment: The core exposure is a staging (non-production) database containing contact details and hashed credentials for ~45,000 users. Because payment card and transaction data appear unaffected, the primary risks are regulatory notification obligations (data breach laws often triggered by exposure of PII, even hashed), reputational risk around "unauthorized access" language, and customer anxiety about account security. Legal exposure increases sharply if the statement implies certainty about scope before forensics conclude — all facts should be framed as "based on our investigation to date."

    Core Narrative Stance: FinVault detected and contained the issue quickly, has engaged independent experts and regulators proactively, and is treating customer trust and account security as the top priority while the investigation continues.

    2. Primary Media Holding Statement (Press Release / On-the-Record)

    FOR IMMEDIATE RELEASE
    September 22, 2026

    FinVault Statement on Data Security Incident

    FinVault recently identified unauthorized access to a staging database environment. Our preliminary review indicates the database contained contact information and hashed account credentials for a subset of users. At this time, our investigation has found no evidence that transaction records or payment card data were affected.

    "The security of our customers' information is our highest priority, and we are moving quickly and transparently to understand and address this issue," said [Name], [Title], FinVault. "As soon as we identified this activity, we isolated the affected systems and engaged an independent forensic cybersecurity firm to conduct a full investigation."

    Upon discovery, FinVault immediately isolated the affected servers and notified relevant regulatory authorities. The investigation is ongoing, and we are working around the clock to determine the full scope of the incident. We will provide an update within 48 hours, or sooner if material new information becomes available.

    Customers with questions can visit [status page URL] or contact [support channel].

    Media Contact: [Name, Title, Email, Phone]

    3. Short-Form Stakeholder Statement (Social Media / Status Page / Customer Email)

    We recently detected unauthorized access to a staging database containing contact details and hashed credentials for some FinVault users. No transaction or payment card data appears to be affected. We've isolated the systems involved, brought in independent security experts, and notified regulators. We'll share updates as our investigation progresses — your account's security is our top priority.

    4. Spokesperson Q&A Guardrails

    • What to Confirm:

    • Unauthorized access was identified in a staging database (not production/live systems, if this distinction is confirmed accurate).

    • Approximately 45,000 users' contact details and hashed credentials were in the affected database.

    • No evidence to date of transaction record or payment card exposure.

    • Affected servers were isolated promptly upon detection.

    • Independent forensic cybersecurity specialists have been engaged.

    • Relevant regulators have been notified.

    • Further updates will follow as the investigation progresses.

    • What to Avoid / Bridge Out Of:

    • How did this happen? Whose fault was it? → "We're not going to speculate on root cause while forensics is underway — we want to give you accurate information, not a guess."

    • Are you sure no payment data was taken? → "Our investigation to date shows no evidence of that, and confirming the full scope is exactly what our forensic team is focused on right now."

    • Will affected users be compensated / is this a lawsuit risk? → "Our focus right now is on understanding the incident fully and supporting our customers — we're not in a position to speculate on that."

    • Was this staging database supposed to have real customer data in it? → "That's part of what the investigation will clarify. We'll share what we learn."

    • How many users were really affected — is 45,000 firm? → "That figure reflects our current understanding; we'll update it if the investigation shows otherwise."

    • Avoid absolute words ("impossible," "guaranteed," "definitely no risk") — use "our investigation to date indicates" instead.

    5. Next Steps Checklist

    • Legal review and sign-off on both statements before release
    • Confirm spokesperson name/title and obtain their approval of the quote
    • Verify the 45,000-user figure and "staging database" characterization with the forensic team before publishing
    • Confirm which regulators have been notified and any mandated disclosure timelines/language requirements
    • Set and staff a dedicated inbox/hotline for affected customers
    • Prepare internal FAQ and talking points for customer support staff
    • Schedule the 48-hour follow-up update and assign an owner
    • Monitor media and social channels for mischaracterizations requiring correction

    A few flags worth resolving before this goes out: confirm whether "staging" is the accurate and legally safest term (regulators sometimes read "staging" as an attempt to minimize), and make sure the 45,000 figure and "no payment data" claim are forensically confirmed, not assumed — both are the kind of details that come back to bite a company if revised later.

    Connects securely to your tools. The creator never sees your data.

    What you get

    Generate press-ready holding statements within minutes of an incident.Protect against legal liability by avoiding premature admissions of fault.Equip spokespeople with safe talking points and bridging phrases.Maintain consistent messaging across social media and formal PR channels.

    About this skill

    Protect your brand reputation under fire. This skill instantly drafts rapid, legally cautious, and empathetic crisis PR holding statements during breaking emergencies—such as data breaches, service outages, executive misconduct, or product recalls. Built for PR leads, founders, and communications teams who must communicate clearly within minutes without prematurely conceding liability.

    How to install

    Works the same in every agent - Claude, Cursor, Codex, Copilot and 20+ more.

    ~30 seconds
    1. 1

      Download the ZIP

      Free skills download straight away. Paid skills unlock right after purchase.

    2. 2

      Unzip into your skills folder

      Every agent reads skills from one folder on your machine. Drop the unzipped folder in there.

    3. 3

      Ask your agent to use it

      Restart the agent if it was already running. It picks the skill up automatically - no config needed.

    Skills folder by agent

    Click the path to copy it. Create the folder if it does not exist yet.

    Reviews

    No reviews yet

    Be one of the first to try it. Every listed skill passes our trust checks below.

    Security scanned

    Passed our 8-point scan before listing

    Fresh listing

    Recently published to Agensi

    30-day refund

    Not a fit? Get your money back

    Trust & safety

    Security scanned

    Verified clean 11 days ago

    • Passed all security checks, Safe to install

    Listed11 days ago

    What's inside

    Frequently Asked Questions