Data privacyXybern Redact

The model never sees the personal data.

Strip the PII before the prompt. Restore it in the reply.

Xybern Redact sits between your people and the model. It finds the personal data in a prompt, replaces it with typed placeholders, sends only the anonymised text, then restores the real values in the reply. The model, and its provider, never see the raw data.

Xybern Redact browser extension anonymising a prompt

Anonymization policies, set before the model.

Choose what counts as sensitive with reusable policies. Finance, legal, and GDPR templates strip the persons, emails, financials, and signatures that matter to you, applied the same way to every prompt, from every tool.

Anonymization policies applied before the model

Every redaction leaves a receipt.

Each anonymisation is sealed with the entities it stripped and a hash chain. You can prove what was hidden, and when, without ever storing the raw values in the clear.

Provenance vault, every redaction leaves a receipt
Everywhere your team works

Redact where the prompts are.

One layer, in the browser, in front of your models, and over your documents. No prompt changes, and no new habits.

Browser

Inline, as they type.

Redact inside ChatGPT, Claude, and any web app, before a prompt is ever sent.

Proxy

In front of any model.

Point your endpoint at Xybern. One base URL, no code changes, every call anonymised.

Documents

Files, stripped and returned.

Upload a document and get it back with the personal data removed, ready to share.

Any model

The provider stays blind.

OpenAI, Anthropic, or your own model, the provider only ever sees anonymised text.

Why it holds up

Private by construction, not by policy.

The personal data is gone before the prompt leaves your control, and every redaction is provable after the fact.

Nothing in the clear

Stripped before the model.

Personal data is removed before the prompt reaches the model, so no third-party AI ever sees it.

Reversible

Restored for the right people.

The real values return in the reply. The mapping stays with you, never with the provider.

Provable

Every redaction, receipted.

Each anonymisation is sealed with the entities removed and a hash, so you can prove it later.

The platform

Inside Xybern Redact.

A drop-in anonymisation proxy, policy templates, a live preview, and a PII risk score, the pieces that keep personal data out of the prompt.

1.0Anonymisation Proxy

Change one line, protect every prompt.

Learn more
2.0Policy Templates

Start protected, tune as you go.

Learn more
3.0Anonymisation Preview

See exactly what leaves.

Learn more
4.0PII Risk Score

Know how exposed a prompt is.

Learn more

Take the personal data out of the prompt.

Put one workflow behind Xybern Redact and watch every prompt leave anonymised, every reply come back whole, and every redaction sealed.