Detecting and removing personally identifiable information from inputs, outputs, or stored data to prevent exposure.
Redaction reduces legal risk and speeds security reviews. PMs choose patterns to redact, acceptable recall/precision balance, and how to preserve utility after redaction. Over-redaction can hurt quality; under-redaction risks compliance.
Run PII detectors on ingress and egress; replace with tokens; store mapping securely if needed. In 2026, maintain per-country rules (GDPR, CCPA) and prove redaction efficacy via sampled audits in your eval harness.
Adding PII redaction before indexing support tickets cut leakage findings to zero in quarterly audits while answer accuracy dropped only 1.2%, an acceptable trade-off for enterprise contracts.