PII Redactor & Secret Scanner
Swap personal data and API keys for placeholders like [EMAIL_1] before you paste text into an AI chat, then put the real values back into the reply. Or scan code and diffs for leaked credentials.
Frequently Asked Questions
Is it safe to paste sensitive text here?
Detection and redaction run entirely in your browser with no network requests. There is no share link, nothing is written to storage, and the placeholder mapping disappears when you close or reload the tab.
How does restoring work?
Each distinct value gets a stable placeholder such as [EMAIL_1]. After the AI replies, paste the reply into the Restore tab and the placeholders are swapped back for the original values, using the mapping kept in this tab's memory.
Which secrets does the scanner detect?
OpenAI and Anthropic API keys, AWS access keys and secrets, GitHub and Slack tokens, Stripe keys, Google API keys, private key blocks, JWTs, credentials embedded in connection strings, and high-entropy values assigned to names like password, token or api_key.
Can it scan a git diff?
Yes. Paste the output of git diff and only added lines (starting with +) are scanned, so you see what a commit would introduce.
Is regex detection perfect?
No. Pattern matching can miss unusual formats and occasionally flags look-alikes such as long numbers. Review the output before sharing, and add any missed names or IDs to the custom terms list.