Universal PII Scrubbing: Protect Any Text on Any Website
Universal Form Interception: Mask PII on Any Web Page

AI Summary / Key Takeaways
"Enforce data privacy universally across any web application. Intercept form submissions in Zendesk, Salesforce, and internal CRM tools to redact PII locally before it reaches external databases."
Enterprise-Grade AI Privacy
Add custom redaction rules and priority support with PRO.
The Challenge with AI Data Workflows
Data leakage isn't isolated to AI tools; customer support agents often paste sensitive credit cards or health data into Zendesk tickets or Slack web clients, instantly polluting your SaaS ecosystem with unregulated PII.
How It Works
Enable Shadow AI Firewall
Open the PrivacyScrubber extension popup and toggle 'Shadow AI Firewall' to ON. The popover activates on the current tab and remains active until you disable it or reload the page.
Select Text on Any Page
Highlight any sensitive text on any website — a Slack message, Zendesk ticket, LinkedIn profile, HR portal form, or email draft. A floating popover appears next to your selection.
Scrub and Use
Click 'Protect' in the popover or press Alt+Shift+X. PII is replaced with tokens in your clipboard. Paste anywhere. The session map is shared with the extension popup so Reveal works cross-tab.
What Teams Achieve with Local PII Masking
Swipe to read more
Supported Formats & Limitations
Supported Formats
System Limitations
- Requires the PrivacyScrubber Chrome Extension
- Certain React/Angular shadow DOM architectures may require manual text selection
- Universal interception focuses on standard HTML input events
Three Ways to Trigger Universal Scrubbing
Shadow AI Firewall Popover
Enable in popup → select any text → floating badge appears → click Protect. Works on every website.
Keyboard Shortcuts
Alt+Shift+X — silent scrub to clipboard. Alt+Shift+P — open popup. Configurable.
Right-Click Menu
3 context menu items on any selection: Open in PS / Protect & Copy / Reverse Scrub. No popup required.
Supported Use Cases by App
| App | Use Case | Recommended Trigger |
|---|---|---|
| Zendesk | Scrub ticket before AI summarization or routing | Right-click → Protect & Copy |
| Slack | Remove names before pasting thread into AI | Alt+Shift+X |
| Notion | Anonymize meeting notes before AI summarization | Shadow AI Firewall Popover |
| Scrub candidate profile before AI assessment | Alt+Shift+X | |
| Salesforce | Remove client PII before AI note drafting | Right-click → Open in PS |
| Gmail / Outlook Web | Scrub customer email before AI reply drafting | Shadow AI Firewall Popover |
| Internal HR / Legal Portals | Anonymize employee or case data before AI analysis | Alt+Shift+X |
For AI platform-specific deep integration (in-page shield, auto-scrub on typing), see Chrome Extension: In-Page AI Redactor. For IDE and local file workflows, see the MCP Server for Cursor and Claude.
Feature Reliability & Audit
This enterprise feature is powered by our Local-First Sanitization Engine. Unlike legacy cloud DLP tools, PrivacyScrubber processes your Universal PII Scrubbing: Protect Any Text on Any Website logic 100% within your browser's V8 sandbox. This architectural decision ensures that even the most complex detection patterns never expose raw data to an external API.
Airplane Mode
Verified feature operational integrity without network connectivity.
Step-by-Step Guide
How to use this feature
Install the extension
Install PrivacyScrubber from the Chrome Web Store. Pin it to your toolbar.
Enable Shadow AI Firewall
Click the extension icon → toggle 'Shadow AI Firewall' to ON in the popup. Or right-click any page and select 'Protect PII & Copy to Clipboard'.
Select sensitive text
Highlight any text on any website — Slack thread, Notion doc, Zendesk ticket, Gmail, HR system, or any Secure Workspace.
Use the popover or shortcut
A floating PrivacyScrubber badge appears near your selection. Click 'Protect'. Or press Alt+Shift+X to scrub silently to clipboard with no popup.
Paste the clean text
The sanitized version is copied to clipboard. Paste into ChatGPT, Claude, Gemini, or wherever you need it. Tokens like [NAME_1] replace all PII.
Frequently Asked Questions
What websites does Shadow AI Firewall work on?
Shadow AI Firewall works on any website accessible in Chrome — Slack, Notion, Zendesk, Salesforce, Workday, LinkedIn, Gmail, Outlook Web, HR portals, legal case management systems, financial dashboards, and any custom internal Secure Workspace. It does not require a dedicated injector for each platform. The Shadow AI Firewall Popover injects on-demand into any page via chrome.scripting.executeScript.
How is Shadow AI Firewall different from the in-page injector on ChatGPT/Claude?
The AI platform injectors (ChatGPT, Claude, Gemini, etc.) are purpose-built: they embed a permanent shield next to the specific AI input field and watch for PII as you type. Shadow AI Firewall is a reactive layer: you select text, and the popover appears. It works anywhere but requires manual selection rather than auto-detection. Both use the same ZTDS engine and share the same session token map.
What are all the keyboard shortcuts?
Alt+Shift+P opens the extension popup from anywhere. Alt+Shift+X scrubs the currently selected text silently — no popup appears, the sanitized result copies directly to clipboard. Both shortcuts are configurable via chrome://extensions/shortcuts. The omnibox keyword 'ps' (type 'ps' in the Chrome address bar and press Tab) opens the extension popup inline.
What are the right-click context menu options?
Right-clicking any selected text on any website shows three PrivacyScrubber options: (1) 'Open in PrivacyScrubber' — opens the extension popup with the selection pre-loaded; (2) 'Protect PII & Copy to Clipboard' — scrubs the selection and copies the sanitized version silently; (3) 'Reverse Scrub (Restore PII)' — replaces any [TOKEN_N] in the selection with original values from the current session map.
Does Shadow AI Firewall persist across tabs?
Shadow AI Firewall is tab-scoped — it activates on the current tab when you toggle it on. Each tab has an independent session map (tab-level isolation). If you enable it on a Zendesk tab, it does not auto-inject into your Claude tab. This is by design: it enforces Zero-Trust session boundaries between different contexts.
Can the session tokens from Shadow AI Firewall be revealed later?
Yes. The Shadow AI Firewall Popover shares the session map with the extension popup (stored in chrome.storage.session, tab-scoped). Any tokens created during Shadow AI Firewall scrubbing are visible in the Reveal tab. You can paste a tokenized response back into the Reveal tab to restore the original values.
Protect Your Team's AI Prompts in Under 30 Seconds
Protect My TeamNo server uploads. Works 100% offline in browser RAM.
