Live · 100% local processing No telemetry. No account. No upsell. v1.0 · 2025

— Browser extension · v1.0

Redact
what AI
can't
unsee.

A browser extension that strikes through sensitive data — emails, SSNs, credit cards, API keys — before the model ever lays eyes on it.

Works on 30+ AI platforms. Press Ctrl+Shift+A to redact in place. Everything stays on your device.

CLASSIFIED
Prompt · /draft.txt before → after
Customer escalation reply

Hi Sarah Chen,

I've reviewed the ticket from [email protected].

Card on file ending 4242 4242 4242 4242

refund issued. Internal ref:

SSN 123-45-6789 · +1-415-555-0117

Best,
Daniel

✓ Redacted · 6 matches local · 0 ms
"Wait — that's a real card number." Yeah. That's the point.
§ 01 — The exposure

Three numbers that make
this uncomfortable.

73%

of employees admit to pasting sensitive company data into AI tools without sanitizing it first.

€20M

maximum GDPR fine for unauthorized personal-data processing — including third-party AI exposure.

0%

of pasted prompts can be made to disappear from a model's training pipeline once they're in. There's no undo.

§ 02 — The method

Two ways to keep
your data off the page.

Method 01 — passive

Sanitized on paste.

When you paste into a supported AI chat, the text is scanned against 20+ on-device classifiers. Any match is replaced with a labelled redaction before the prompt ever leaves the browser.

You paste Email [email protected] about Q4 budget.
Model receives Email [EMAIL_REMOVED] about Q4 budget.
Method 02 — active

One shortcut, full wipe.

Already typed something sensitive into the chat box? Press Ctrl+Shift+A. Every match in your message is redacted in place — without losing the rest of what you wrote.

You typed My SSN is 123-45-6789 — please update the form.
After shortcut My SSN is [SSN_REMOVED] — please update the form.
ChatGPTClaudePerplexityGemini CopilotPOEYou.comDeepSeek HuggingFaceMistralPi.aiCharacter.AI Meta AIKimiGroq ChatGPTClaudePerplexityGemini CopilotPOEYou.comDeepSeek HuggingFaceMistralPi.aiCharacter.AI Meta AIKimiGroq
§ 03 — What we redact

A field guide to the
things you shouldn't paste.

001
Email addresses
Personal & corporate inboxes — including aliases, plus-addresses and quoted forms.
[EMAIL_REMOVED]
002
Phone numbers
International formats, dashed, dotted, parenthesised. E.164 + national.
[PHONE_REMOVED]
003
Credit cards
Visa / MC / AmEx / Discover / Diners. Luhn-checked. CVV stripped on sight.
[CARD_REMOVED]
004
SSNs & national IDs
US SSN, UK NIN, EU national IDs, PESEL, ITIN — pattern + checksum.
[SSN_REMOVED]
005
API keys & tokens
OpenAI, Anthropic, AWS, Stripe, GitHub PATs, JWTs — entropy + prefix detection.
[KEY_REMOVED]
006
IBANs & account numbers
SEPA IBANs, US routing/account, BIC/SWIFT — checksum-validated.
[IBAN_REMOVED]
007
Names & addresses
Light NER for common patterns — full names paired with locations get masked.
[NAME_REMOVED]
008
Custom patterns
Add your own regex for project codenames, internal URLs, customer IDs.
[CUSTOM_REMOVED]
"

Every prompt is a paper trail. Treat it like one.

The reason this exists
§ 04 — The promise

Four things this
extension will never do.

i.

Phone home.

All processing happens on-device. There is no server. There never will be one.

ii.

Track you.

No analytics, no telemetry, no usage stats. We do not know what you redact. We do not want to.

iii.

Sell anything.

The extension is free for individuals. No upsell. No enterprise dark patterns. No ad in your settings panel.

iv.

Hide its workings.

Every detector is documented. The redaction list is exportable. Compliance reviews are a five-minute job.

§ 05 — Footnotes

What people
ask first.

How does the protection actually work?

When you paste into a supported AI tool, the extension scans your text against 20+ on-device classifiers. Any match — emails, SSNs, credit cards, API keys, names, phone numbers — is replaced with a labelled placeholder before the prompt is submitted. Your original text is never sent.

Is this GDPR-compliant for business use?

Yes. All processing is local — nothing reaches our servers (we don't have any). Suitable for teams that need to enforce GDPR-aligned policies on third-party AI usage without blocking those tools entirely.

Will the AI still understand my prompt?

Yes. Placeholders are labelled ([EMAIL_REMOVED], [SSN_REMOVED], [NAME_REMOVED]) so the model still understands the structure and intent — it just doesn't see the sensitive values.

Can I add my own patterns?

Yes. Custom regex rules let you cover project codenames, internal URLs, customer IDs or anything else you'd rather not leak.

Which platforms are supported?

ChatGPT, Claude, Perplexity, Gemini, Copilot, POE, You.com, DeepSeek, HuggingFace, Mistral, Pi.ai, Character.AI, Meta AI, Kimi, Groq — and 18+ more.

How much does it cost?

Free. No account, no upsell, no telemetry. We may eventually offer a paid team tier for centrally-managed policies, but the core extension stays free.

— Get the extension

Strike it through.
Before AI
sees a thing.

One-click install. No account. No tracking. Free for individuals — forever.