Free Flex
AvailableQueued processing with no speed promise. An idle model can take several minutes to start.
- No account
- No payment
- Same review controls
PII removal for documents
Upload a PDF, email, or text file. Privacy.ly finds likely personally identifiable information (PII), lets you approve each redaction, and creates a redacted copy plus an evidence report.
PDF, email, or text
Automatic scan
Approve redactions
Redacted Copy + evidence
Beta access
Invited beta customers can sign in to process documents.
Upload a document
Drop it here.
We’ll flag likely personal information for your review.
0 characters ready
Select a document to review its next step.
No documents added yet.
No active document
The review workspace appears after a document is added.
Add a document or use a demo-safe sample.
Reduced preview appears after analysis and review.
No active findings.
Review evidence before sharing this output.
No findings yet.
How it works
Privacy.ly uses the open-source openai/privacy-filter project, served through Replicate, to find likely PII. The model suggests what may be private; you decide what is actually removed.
During processing: extracted text is sent to Replicate through our server. Provider credentials stay server-side. Privacy.ly does not retain source files, filenames, or raw detected values in app-managed storage.
Selectable text is extracted directly. Image-only pages use coordinate-backed OCR only when the words can be mapped safely back to the page; otherwise processing stops.
The Privacy Filter model returns likely names, email addresses, phone numbers, identifiers, and other PII with a label and confidence score.
Privacy.ly maps each finding to its location in the PDF. You choose which findings to redact and which to keep.
Approved findings are removed with true PDF redaction, not a visual cover. Metadata and embedded files are cleared, form and annotation content is baked, and the result is re-read to check that approved text is no longer recoverable.
Processing
The review workflow stays the same. Only the time to start changes.
Queued processing with no speed promise. An idle model can take several minutes to start.
Tell us what you process. We’ll invite a small group when always-warm capacity is ready.