Compliance & PII

Scan for personally identifiable information, regulated data categories, and policy-specific prohibited disclosures.

PII types detected

  • Names, dates of birth, government IDs
  • Email addresses, phone numbers, physical addresses
  • Financial identifiers (account numbers, card numbers)
  • Medical record numbers and PHI
  • IP addresses and device identifiers
  • Biometric identifiers

Regulatory frameworks

The compliance pillar maps detected entities to relevant regulatory frameworks:

  • GDPR: Personal data (Art. 4) and special category data (Art. 9)
  • HIPAA: Protected Health Information (PHI) — 18 identifiers
  • CCPA: California personal information categories
  • PCI DSS: Cardholder data environment identifiers

PII masking

When the mask action is configured, detected PII is replaced with typed placeholders: [NAME], [EMAIL], [SSN], etc. The masked response is returned to your application.

Was this page helpful?