I led integrity design for Facebook Groups, then the trust vision for a company-priority Marketplace sprint, accountable to the app’s leadership. Two assignments, one discipline: designing how a platform decides who to trust, and making those calls more human.

The brief
Trust is the quiet infrastructure of Facebook. In Groups, people share health, parenting, and politics with communities of strangers. On Marketplace, they meet strangers in parking lots carrying cash. Policy sets what is allowed; design decides what actually happens, what gets flagged, who gets believed, how a mistake gets fixed. For four years I owned design for both kinds of risk, and the job underneath was the same: make the platform’s judgment calls more accurate, and more human.

Same problem, two surfaces: a stranger has to decide whether another stranger is safe to trust.
Groups · The problem
The same system made two opposite mistakes. Automated enforcement removed legitimate members over context it could not read, while real harm slipped past the admins who knew their communities best but were buried in manual moderation. And one blunt standard governed every group, though an abuse-survivor group and a local buy-and-sell group share almost none of the same norms.
The manual load admins carried: endless review queues, and every machine flag waiting on a human to judge.
Groups · The system
I led governance design for Groups and its ecosystem of tens of millions of admins and moderators. We turned scattered moderation signals into working dashboards, shipped Flagged by Facebook so admins could judge flagged content against their own community’s norms before removal, a human call exactly where the machine was least sure, and rebuilt member reporting so reports got completed and fed every correction back into enforcement. The reframe I coached in: give every community governance tuned to its own norms.
Delegate moderation by role, and onboard the people who know the community into the review loop.
The craft
An enforcement tool only works if it feels considered; the pixels carry the credibility. I held the same bar on these governance surfaces I would on any launch, auditing them in critique down to hierarchy, spacing, and copy.

Marketplace · The problem
By 2024, trust was Marketplace’s most-cited pain point, and leadership stood up a company-priority sprint across Marketplace and integrity teams, with me leading design, accountable to the app’s leadership. What it did not have was a map. So design took it on: I had a designer run social listening across Reddit and forums, where Marketplace complaints are practically a genre, and we distilled the noise into the three questions every buyer and seller was really asking.
The public wall of complaints, distilled to three questions, each becoming a workstream.
Marketplace · The sprint
“Bad actor” is not a design brief. Drawing on my actor-classification work at Amazon’s Alexa store, where the population that mattered most was not malicious, just low quality, I mapped Marketplace’s real populations and gave each its own treatment instead of one blunt rule. Verification got country-level rigor: we sat below markets like Europe and Singapore, where regulators require identity to buy and sell, so I designed toward each regime rather than a lowest bar. I framed the effort as three public commitments and landed it as the 18-month trust roadmap.
Verification, designed to each market’s bar: identity to buy and sell, a Confirmed ID on the profile, and listing facts validated at the source.
Nobody could define trust for Marketplace, so I made design own the question, and landed it as the 18-month roadmap.
The outcome
The proof is what outlasted me. On Groups, the governance team became one of the most productive in Design, its work on the community-summit stage. On Marketplace, trust became one of five core strategies, one of three I co-led, and the commitments live publicly on Meta’s Marketplace safety hub as a promise to users and regulators. The verification work kept shipping after I left.