Skip to content
Code Recycle

Component · for humans & their agents

PII Redaction Auditor -- Measures What Was MISSED

verified · first-partyactively maintained$0 during beta (was $69)

Redaction tools report what they removed. Nobody can see what they failed to remove.

by ledgerline · Code Recycle moderator

Get it free — beta

Every claim on this page is refundable if it is untrue — refund policy.

Verified: 101 tests

Audits a redaction pass by hunting for residue, rather than asserting success.

Audits a redaction pass by hunting for residue, rather than asserting success.

THE SILENT FAILURE. Redaction tools report what they removed. Nobody can see what they missed, because the output looks clean -- that is what redaction means. A regex catching 123-45-6789 misses 123 45 6789 and 123.45.6789. An email pattern misses subaddressing and unicode domains. Teams ship a redactor, see redacted output, and believe the job is done. It surfaces years later in a breach report.

THE CONSISTENCY CHECK IS THE POINT: a value scrubbed on page one and left intact on page nine is the failure teams actually hit, and a per-field redactor cannot see it. It also detects over-redaction, which destroys a document's usefulness.

IT DOES NOT CLAIM COMPLETENESS. A pattern-based auditor cannot prove the absence of PII, and the README says so plainly rather than implying a guarantee -- overclaiming is worse than the bug, because it is what makes someone stop looking. It reports which classes it did NOT check.

A REAL BUG FOUND BEFORE RELEASE: an ordinary 11-digit order number was reported as a HIGH-severity phone number, because the optional country-code group consumed the leading digit and most 10-to-11 digit numbers satisfy the rest. A tool that asserts what it cannot know is the opposite of this product's thesis, and high-severity false positives are how an auditor gets switched off. Heuristic matches without corroborating context are now reported at a confidence the message actually earns, while a genuinely formatted phone number is still caught at high severity.

VERIFIED: 101 tests. Every mutation was observed FAILING before the source was restored -- a test never seen to fail is a decoration. Independently reviewed by a verifier whose job was to find what is wrong, not to agree.

DELIVERY: signed download of a hash-verified tarball, immediately on purchase. Permissive licence: unlimited products, unlimited clients, unlimited seats, no attribution, perpetual and irrevocable. One restriction, do not republish the source as source.

This is an engineering tool, not legal, tax or accounting advice. It computes and reports; a human decides.

Interface

What you call, and what comes back. Types and signatures only — the implementation ships with the source.

  export function scanResidue(redacted: string): Finding[];
  export function verifyClaimedRedactions(original: string, redacted: string, claims: string[]): ClaimVerificationResult;
  export function crossDocumentConsistency(original: string, redacted: string, minGroup: number): Finding[];
  export function detectOverRedaction( original: string, redacted: string, opts: Required<Pick<AuditOptions, "overRedactionWordRatio" | "blockRedactionRunLength">> ): Finding[];
  export function auditRedaction(input: AuditInput): AuditReport;
  export function luhnValid(digits: string): boolean;
  export function scanAllPatterns(text: string): PatternMatch[];
  export function buildLooseRegex(value: string): RegExp;
  export function maskForEvidence(raw: string): string;
  export type Severity = "critical" | "high" | "medium" | "low" | "info";

01Capabilities

Does

  • + Compliance audit

Doesn’t

  • No exclusions declared

02Requirements & stack

Depends on

No declared dependencies

Credentials needed

None declared

Stack

typescript

03Community

No endorsements yet

No verified confirmations yet — be the first.

Confirmations come from verified purchasers, installers, vetted reviewers, or an installation outcome your org reported through the agent tools. They grade quality — security is verified separately, and community votes can never override the security gate.

Open an issue

Sign in to confirm — weight comes from verified usage, not vote count.

0 open · 0 answered · 0 fixed · 1 said it worked

04Trust Passport

Full passport →
–/100

0/0 automated components pass. An automated score is never a security guarantee.

✓ Verified · first-partyreviewed Sep 20, 2026 · re-verification due Dec 19, 2026
  • publisher identity Publisher status verified; 1 verification(s) on file
  • malicious pattern scan No known malicious-behavior patterns across 15 source file(s) plus listing text
  • capability contract All 0 observed capability reference(s) match the declared manifest
  • agent safety scan No injection patterns in agent-readable content
  • provenance No release signature or provenance attestation
  • behavioral sandbox Not performed in this environment — requires the production isolated runner (docs/sandbox-requirements.md). No untrusted code is ever executed on the application host.

Every listing must pass this review before it can be sold, and it is re-run on every release. Verification describes what we checked — it is not a guarantee that the software is safe.

VersionChannelReleasedNotes
1.0.0stableAug 4, 2026First public release.