Skip to content

“PII redaction that never leaves the client.”

SHIPPED 2025 · v2.1.0 · MIT

AAL's open-source PII redaction tool for ChatGPT prompts. 100% local, 16 entity types, zero bytes to the wire. Built in a Forge sprint, released under MIT. Proof that Forge ships FOSS clients adopt before paying for the SaaS.

Discuss what you need ↗

See what gets protected.

Obscura redaction demonstration comparing a sample prompt containing names, a phone number and an email with typed placeholders.

Interface demonstration using sample data. Names, phone numbers and email addresses become placeholders before the prompt is shared.

View full size

Solve PII before ChatGPT does.

Every client worried about the same thing: teams already pasting customer data, contract clauses, and internal numbers into ChatGPT. Compliance had memos, legal had policies, nothing stopped it. Opening a separate tool was more friction than the perceived risk. Obscura redacts before the prompt leaves the browser, not after a quarterly audit catches it.

What was built.

Pick the entity library.

NER baselines plus regex for what NER misses at scale (emails, IBANs, license plates, project codenames). Settled on 16 PII types documented in the open-source project. Local-first, non-negotiable.

Detection stays on the local machine.

A Chrome extension connects to a Python service on localhost. GLiNER, regex and validators detect sensitive data; typed placeholders replace it before sharing. A local session restores the original values in the response. The extension shows what is protected.

Audit, document, ship under MIT.

Security pass on the manifest permissions. Removed every analytics call. README written for a security team to vet before install. Released to GitHub under MIT with a single-binary install script.

Open-source release, paid SaaS to follow.

Public on GitHub, adopted internally by three agency clients in the first month. The SaaS version (central policies, audit logs, fleet management) is the natural Forge follow-up: same engine, different distribution.

  • Detection engine · ✓ INCLUDED
  • Browser extension · ✓ INCLUDED
  • Entity library (16) · ✓ INCLUDED
  • Public GitHub release · ◐ LIVE

Python · Flask · SQLite · Chrome extension API · GLiNER + Regex · MIT

What it demonstrates.

0BYTES LEAKED
16ENTITY TYPES
100% LocalEXECUTION
MITLICENSE
4 WeeksTIME TO RELEASE

“We needed our team to stop pasting customer data into ChatGPT without deploying yet another security tool. Obscura solved it where the problem happens: the browser, not a policy doc.”

Engineering Lead · AGENCY CLIENT · EMEA
See Obscura on GitHub ↗

What needs to work for you?

A question or a short outline is enough. Prepare it here, then review it in the shared contact form.

Discuss Agency software

Nothing is sent here. Your draft stays in this tab until you review it, add contact details and send the contact form. Ask for an NDA before sharing confidential material.

Contact us without a draft