Item logo image for Redact

Redact

5.0(

1 rating

)
Item media 2 (screenshot) for Redact
Item media 1 (screenshot) for Redact
Item media 2 (screenshot) for Redact
Item media 1 (screenshot) for Redact
Item media 1 (screenshot) for Redact
Item media 2 (screenshot) for Redact

Overview

Privacy guard for LLM chats. Catches credentials and PII - On-device and Open source.

Redact catches credentials and personally identifying information before it reaches LLM chat boxes. Detection runs locally inside the user's browser using a small neural network bundled in the extension package. HOW IT WORKS When the user pastes into a supported chat box, Redact intercepts the paste event and scans the text in a Web Worker. Inference completes in about 150 milliseconds on a modern laptop after the model has loaded. The model recognizes credentials, social security numbers, credit card numbers, email addresses, and phone numbers. A regex safety net adds high-precision detection for canonical credential formats including AWS access keys, GitHub personal access tokens, Anthropic API keys, JWTs, database connection URLs, and private key blocks. INTERACTION Each entity type has a Block / Warn segmented toggle in the popup's "Sensitivity per type" section. When a blocked item is detected the user can choose one of four flows: a quick prompt, a full-screen block, a cooldown after the first prompt, or silent auto-redaction. WHERE IT RUNS Redact activates only on the chat sites declared in its manifest. The current host list is published at redact.clearformlabs.com. PRIVACY The extension contains no analytics or telemetry. The detection model loads from a chrome-extension:// URL inside the extension package and never from any external origin at runtime. The only persisted data is the user's own settings, stored via chrome.storage.sync. A source search for fetch or XMLHttpRequest returns no outbound network calls. Full privacy policy: https://redact.clearformlabs.com/privacy KNOWN BEHAVIOR By design, the extension ignores canonical placeholder values that appear in documentation and tutorials. The training set explicitly excludes AKIAIOSFODNN7EXAMPLE, 4242 4242 4242 4242, 123-45-6789, test@example.com, 555-555-5555, and similar well-known samples. Redacting those would create false positives every time a user pasted a tutorial snippet, so the model is balanced to let them through. Detection of canonical credential formats (AWS access keys, GitHub personal access tokens, Anthropic API keys, JWTs, database connection URLs, private key blocks) is deterministic via the regex safety net. Less-common credential formats rely on the neural network and may have variable accuracy. The extension is intended as a defense-in-depth layer alongside proper secrets management, not as a guarantee that every secret will be caught. The extension does not function on sites whose Content Security Policy blocks blob: workers, such as Gemini. On those sites it disables itself silently and passes pastes through unchanged. OPEN SOURCE Source: github.com/Clearform-Labs/Redact License: PolyForm Noncommercial 1.0.0.

Details

  • Version
    1.0.0
  • Updated
    June 3, 2026
  • Offered by
    Clearform Labs
  • Size
    27.04MiB
  • Languages
    English (United States)
  • Developer
    Email
    graham@clearformlabs.com
  • Non-trader
    This developer has not identified itself as a trader. For consumers in the European Union, please note that consumer rights do not apply to contracts between you and this developer.

Privacy

Manage extensions and learn how they're being used in your organization
The developer has disclosed that it will not collect or use your data. To learn more, see the developer’s privacy policy.

This developer declares that your data is

  • Not being sold to third parties, outside of the approved use cases
  • Not being used or transferred for purposes that are unrelated to the item's core functionality
  • Not being used or transferred to determine creditworthiness or for lending purposes

Related

PiiBlocker : Mask PII in AI Chatbots

5.0

Stop data leaks to AI chatbots. Detects and masks personal data before it reaches ChatGPT, Claude, and Gemini. 100% local.

AIgis - Secure & Optimize AI Interactions

0.0

Secure & optimize your AI interactions. Locally mask secrets and optimize tokens in prompts before sending them to LLMs.

Rescriber

0.0

Detect and redact PII in your ChatGPT prompts before you send them. Runs entirely in your browser — no server, no API key.

LockGPT - Lock ChatGPT Chats

0.0

PIN-protected ChatGPT chats and marks them as private.

2! Authenticator

3.9

The private, offline 2FA Authenticator. Import accounts from mobile apps and generate TOTP codes securely

Noxis - Privacy Watch

5.0

Privacy protection for AI chat platforms. Detects and blocks personal data before it is sent.

GitPwn

5.0

Advanced detector for exposed .git/.svn/.hg repositories, leaked secrets and sensitive files on websites

Brazen Trace: Export ChatGPT and Google AI Mode

4.0

Export ChatGPT and Google AI Mode conversations, sources, and citations as TXT or JSON. Private by design. No telemetry.

Clip Guard AI

0.0

Automatically detect and mask API keys, tokens, and secrets when pasting to AI chatbots

SafePaste AI - Privacy Shield

0.0

Prevents data leaks. Auto-masks API Keys, Tokens, Passwords, PII & Database URIs in text and files before sharing with AI platforms.

SecureLint – Secret Masking & Phishing Shield

0.0

Masks API keys, passwords & secrets in real-time. Blocks phishing, malware & data leaks. Enterprise DLP & browser security.

Privacy Guardrail

5.0

Review and replace personal data in text before pasting into LLM chats. Runs locally in your browser. Assistive only.

PiiBlocker : Mask PII in AI Chatbots

5.0

Stop data leaks to AI chatbots. Detects and masks personal data before it reaches ChatGPT, Claude, and Gemini. 100% local.

AIgis - Secure & Optimize AI Interactions

0.0

Secure & optimize your AI interactions. Locally mask secrets and optimize tokens in prompts before sending them to LLMs.

Rescriber

0.0

Detect and redact PII in your ChatGPT prompts before you send them. Runs entirely in your browser — no server, no API key.

LockGPT - Lock ChatGPT Chats

0.0

PIN-protected ChatGPT chats and marks them as private.

2! Authenticator

3.9

The private, offline 2FA Authenticator. Import accounts from mobile apps and generate TOTP codes securely

Noxis - Privacy Watch

5.0

Privacy protection for AI chat platforms. Detects and blocks personal data before it is sent.

GitPwn

5.0

Advanced detector for exposed .git/.svn/.hg repositories, leaked secrets and sensitive files on websites

Brazen Trace: Export ChatGPT and Google AI Mode

4.0

Export ChatGPT and Google AI Mode conversations, sources, and citations as TXT or JSON. Private by design. No telemetry.

Google apps