Before sharing a contract, invoice or official document, you need to hide the personal data inside it (ID numbers, IBAN, phone, address) — often a legal requirement under GDPR/KVKK. But beware: drawing a black box over text is NOT real hiding.
Why a "black box" isn't safe
In most tools you "hide" sensitive data by drawing a black rectangle over it. But the original text stays inside the document: anyone who opens the PDF in a text editor, removes the box, or copies the text can read the data back. That's a leak and a compliance risk.
Real redaction removes the data from the document's CONTENT. Our redaction tool uses PyMuPDF to delete the data entirely — it doesn't cover it. In the redacted spot, searching, copying or recovery is impossible.
How it works — step by step
- Upload the PDF: Add your document to the redaction tool.
- Sensitive fields get found: Patterns like ID, IBAN, phone and email are detected on your device; context-based data like names and addresses is detected with AI.
- Remove permanently: The fields you confirm are truly deleted from the document's content. Download the cleaned PDF.
Redact Sensitive Data — Permanently remove personal data and share the document safely.
When do you need it?
- Before sharing a contract or invoice with a third party.
- In official applications, tenders or court files.
- For documents published as samples/templates.
The part of the personal data detected on your device (ID, IBAN, phone, email) is not sent anywhere as it's removed; only context-based detection (name/address) sends text to the AI.
Sensitive fields people overlook
Personal data does not sit only where you expect. While checking the middle of a page before sharing, the details around the edges get skipped — and that is exactly where leaks come from.
- Names, branch codes or usernames in headers and footers.
- The signature block and direct phone number of whoever prepared the document.
- Records belonging to third parties left in annex table rows.
- Readable details underneath stamp and signature images.
- A customer number on an invoice, or a full account number on a statement.
Metadata is part of the document too
Even with everything on the page cleaned, a document can still carry invisible information: the name of whoever created the file, the software used, creation and modification dates, and sometimes a title left from an earlier draft. These sit in the document properties and anyone curious can see them in a couple of clicks. Clearing metadata is the companion step to redaction on documents going outside.
What to hide and what to leave
Over-redacting makes the document useless; under-redacting leaves the risk in place. The test is the purpose of sending it: which information does the recipient genuinely need to do their job? Sending a lease for a loan application needs the rent figure, but usually not the landlord's identity number. Asking that question field by field leaves a document that is both compliant and usable.
Verifying after redaction
- Reopen the document and search for what you removed; any result means removal did not happen.
- Select the text and paste it elsewhere; the redacted part should not appear.
- Review every page — the same detail may repeat elsewhere.
- Check document properties; a name or file path may remain in the metadata.
- Save the redacted version under a new name and share from that file.
Scanned documents behave differently
In a scanned document the page is an image; with no text layer there is no text to remove, and covering an area stays permanent on the image. But if the document has been through OCR, an invisible text layer sits beneath it and the information in that layer can still be copied. So with scans it is worth checking whether a text layer exists.
