Swaps Names, Phones, Emails, SSN, Credit Cards & IPs with safe tokens before AI ingestion.
Paste AI responses back to reveal original client data locally in browser RAM without server leaks.
Zero servers, zero telemetry, zero logs. Verified offline in Airplane Mode with sub-millisecond speed.
- In-Page Shield & Web App
Use via keyboard hotkey
Alt+Shift+Xdirectly in ChatGPT and Claude or full web app. - Generous Free Volume
Up to 15,000 characters per scrub for general PII + 5,000 char free quota across all 30 Specialized Profiles. SDK & MCP free with session limits.
PrivacyScrubber Pricing — Remove PII Before ChatGPT, Claude & Gemini
The AI data privacy tool that anonymizes data 100% locally in browser RAM. Compare Free, PRO, Teams, and Enterprise plans.
Transparent Pricing. Zero Subprocessor Risk.
Sanitize enterprise prompts locally in browser RAM before sending to ChatGPT, Claude, Gemini, or Cursor. Zero servers, zero per-seat tax, 100% GDPR, HIPAA & SOC 2 compliant.
The True Cost of AI Privacy: Breach vs. DIY vs. ZTDS™
Average cost of a GenAI corporate data breach according to the IBM Security Report.
- Up to €20M or 4% turnover (GDPR & EU AI Act Art. 50).
- $50,000/violation statutory HIPAA willful neglect fines.
- 6–12 week enterprise procurement stalling for vendor reviews.
Internal engineering salary to build, test and maintain custom regex DLP logic.
- $500–$2,000/mo server bills for centralized cloud proxy nodes.
- 200–500ms network roundtrip latency on every developer prompt.
- Ongoing regex drift, edge-case false positives & triage drag.
Flat-rate team protection with 100% in-memory client-side sanitization.
- 0-Day Approval: Zero subprocessors, no DPA paperwork needed.
- <2ms local RAM execution with 0 bytes network egress.
- Turnkey compliance proofs: SOC 2 Type II & ISO 27001 mapping.
No character limits across all 30 specialized industry profiles (HIPAA, Legal, Finance, W-2, Logs).
Air-gapped stdio secret & PII stripping directly inside AI IDEs and code assistants.
Tesseract WASM scrubs scanned PDFs, screenshots & bulk folders in local memory.
Inject custom rules for internal project codenames, client codes & proprietary identifiers.
Cryptographic certificates with SHA-256 session digests proving zero raw PII egress.
Single flat license covering every employee. Zero per-user tax, headcount tracking, or seat tiers.
Share sanitized AI prompt sessions directly between colleagues without exposing raw client cleartext.
Distribute proprietary project codes, client lists, and custom regex policies across all staff browsers.
Cryptographic PDF receipts proving 0-byte server egress to satisfy SOC 2, HIPAA, and GDPR auditors.
100% client-side architecture bypasses multi-month vendor security reviews with a pre-cleared CISO memo.
Acts on behalf of users at the API boundary, quashing PII before ingestion to fulfill GDPR, CCPA/CPRA, and statutory privacy duties automatically.
Deterministic, syntax-preserving tokens maintain 100% LLM reasoning fidelity; exact cleartext is restored exclusively in local Node/WASM memory.
100% in-process execution in your own memory space. Completely eliminates cloud DLP brokers (Skyflow, Lakera) — zero data touches third parties.
Intercept PII before vector embedding into Pinecone, Qdrant, Chroma & agent loops, permanently solving GDPR Art. 17 right-to-be-forgotten.
High-throughput linear RAM stream (8.4 MB/s). 250x faster than cloud DLP with zero network hops, zero egress fees, and master key custody.
Traditional Cloud DLP vs. PrivacyScrubber TEAMS — 94% Cost Reduction
Cloud DLP vendors charge $30–$50/user/mo ($18,000–$30,000/yr for 50 seats), introduce 250ms+ network latency, and require months of vendor security assessments. PrivacyScrubber TEAMS costs $99/mo flat ($1,188/yr) for unlimited seats with zero server-side subprocessor liability.
Complete on-premise source code licensing, 100% air-gapped sovereign deployment, proprietary patent-pending architecture (IL 331905 · WIPO DAS B17B), custom SIEM log integration, dedicated GRC support & bilateral DPA for healthcare systems, banks, defense, and 10,000+ seat organizations.
What You Get & Why It MattersRole & feature entitlements across Free, PRO, TEAMS, and Enterprise tiers
Compare All Specifications →Hide Specifications ←
Role & feature entitlements across Free, PRO, TEAMS, and Enterprise tiers
Outcome First: Unified Security Across 4 Environments
One architectural framework protecting prompts, workspaces, IDEs, and backend data pipelines.
Sanitize prompts & reveal responses directly in ChatGPT, Claude, Gemini & DeepSeek with Alt+Shift+X.
Process bulk folders of legal agreements, HR resumes, Excel spreadsheets (.xlsx/.csv), and OCR PDFs.
Equip Cursor, Windsurf, Claude Code, and agentic workflows with air-gapped secret and PII stripping.
Act as an active consumer privacy fiduciary. Intercept PII at the application boundary with zero data loss, zero third parties, and <1ms Node.js/WASM execution.
Transparent Tiering: PRO ($15/mo or $110 Lifetime) covers Web + Chrome + MCP. TEAMS ($99/mo) covers entire company domain. Developer SDK ($199/mo) enables headless microservice automation.
How does PrivacyScrubber compare?
Interactive B2B AI Privacy ROI Calculator
Calculate your mitigated risk exposure and direct licensing savings compared to traditional cloud DLP proxies.
In-Process Interception vs. Cloud DLP Proxies
Why modern AI engineering and security teams choose embedded boundary defense over external API brokers:
Acts systematically on behalf of consumers at the ingestion gate. Intercepts sensitive entities before database commit or LLM transmission.
Syntax-preserving typed tokens preserve 100% LLM reasoning fidelity without lossy redaction. Cleartext restored exclusively in RAM.
Runs 100% in-process in your own Node.js / WASM runtime. Eliminates external SaaS brokers (Skyflow, Lakera) with zero third-party audit liability.
High-throughput in-memory execution (8.4 MB/s). 250x faster than cloud DLP roundtrips with $0 outbound egress tax.
Detailed Capability Matrix
Fact-checked deep dive into our zero-trust modules, execution limits, enterprise controls, and deployment tiers.
| Capabilities & Privacy Standards | Free ($0) | PRO ($15/mo) | TEAMS ($99/mo) | SDK ($199/mo) | ENTERPRISE |
|---|---|---|---|---|---|
| 1. Core Zero-Trust Detection Engine | |||||
| Sensitive PII Entity Detection Names, Emails, Phones, Addresses, Credit Cards, SSN, Passports, API Keys | General (15k) + 30 Profiles (5k Free Quota) | 30 Profiles | 30 Profiles | 30 Profiles | 30 + Custom Schema |
| Pre-Configured Industry Profiles Medical/HIPAA, Legal/Attorney-Client, DevOps/Secrets, Finance, Sales/CRM, HR, Academic | General (15k) + 30 Profiles (5k Free Quota) | All 30 Profiles | All 30 Profiles | All 30 Profiles | Multi-Org Profiles |
| 1-Click Reverse Reveal (De-anonymization) Reveal real client names & parameters from [NAME_1] in AI response output | |||||
| Custom Regex & Keyword Rules Builder Sanitize proprietary project codenames, internal IDs, and custom contract terms | — | Unlimited Local | Unlimited + Sync | Custom Config | Centralized MDM |
| White-Label Prompts (Zero Promotional Watermarks) Scrubbed output contains zero third-party branding or marketing trailers | — | ||||
| 2. Multi-Environment Access & Integrations | |||||
| Chrome Extension In-Page Floating Shield Real-time prompt scrubbing in ChatGPT, Claude, Gemini, Copilot, DeepSeek | 15k chars / prompt | Unlimited | Unlimited | — | Unlimited Fleet |
| Local Web App (Single & Bulk File Workspace) Drag-and-drop batch folder sanitization for .txt, .docx, and .csv files | Single File | 50+ Batch Files | Unlimited Batch | CLI & Scripts | Batch & Automated CLI |
| Interactive Area Snip & Screenshot OCR Select screen area to extract, scrub PII, and copy clean text to clipboard instantly | 3 Scans / Session | — | |||
| Scanned PDF & Document OCR (Tesseract WASM) 100% offline document OCR running inside browser memory (0 byte upload) | 3 Pages / Session | Node Buffer OCR | |||
| Local MCP Server for AI Agents & Cursor Native stdio MCP protocol for Cursor, Windsurf, Claude Code, and agent pipelines | Free Quota | ||||
| Native Sanitized File Exports (.docx, .csv, .pssession) Download scrubbed contracts, spreadsheets, and encrypted session key backups | Copy Only | ||||
| Developer SDK & Headless Node.js Engine Local programmatic PII scrubbing for CI/CD, scripts, and autonomous backend pipelines | Free Quota | Unlimited Headless | Unlimited & On-Prem | ||
| 3. Zero-Trust Architecture & Data Safety | |||||
| 100% Volatile RAM Execution (0 Network Packets) Zero cloud server proxy, zero telemetry logging, zero disk writes | |||||
| Airplane Mode & Offline Persistence Fully operational with disconnected Wi-Fi / air-gapped workstations | |||||
| Ephemeral RAM Encryption Key (LibSodium) Session token maps wiped from memory upon browser tab closure | |||||
| 4. Team Governance & Fleet Administration | |||||
| Seat Allocation & Licensing Model No per-seat penalty. Add all lawyers, doctors, or engineers without surprise bills | 1 User | 1 User (3 Devices) | Unlimited ($99/mo) | Single Org Servers | Custom Scale |
| Encrypted Peer-to-Peer Team Session Handoff (Patent Pending) Share scrubbed AI outputs with colleagues via 1-click encrypted Blueprint link or QR (IL 331905 · WIPO DAS B17B) | — | — | — | ||
| Lock Extension Protection (Strict CISO Mode) Enforce mandatory redaction; prevent employees from turning off protection in AI tools | — | — | Blueprint Lock | — | MDM Enforced |
| Centralized Fleet Rollout (MDM / Intune / Google) Push pre-locked extension policies via Google Workspace Admin, Microsoft Intune, Jamf | — | — | GPO / Registry | NPM / CI Automation | Full MDM & Intune |
| Real-Time SIEM Streaming & Webhook Heartbeats Stream zero-PII audit heartbeats directly into Splunk, Datadog, Slack for SecOps alerts | — | — | Optional Webhook | Syslog & SIEM | |
| 5. Enterprise Compliance, GRC & Contracts | |||||
| Cryptographic Signed Compliance Receipts Generate signed PDF receipts with SHA-256 session proof for SOC 2 & HIPAA auditors | — | 1-Click Proof | Team Receipts | SHA-256 Hashes | Automated GRC |
| 100% Air-Gapped / Defense Mandates (ITAR, CJIS) Operates completely isolated from external networks for defense & sovereign data | — | — | — | ||
| Full Source Code License & Private NPM SDK Complete source code audit rights and self-hosted SDK for internal pipelines | — | — | — | — | |
| Dedicated GRC Support & Security Questionnaires Pre-filled SIG, CAIQ, and VSA questionnaires + direct CISO architecture calls | — | Public Docs | Public Docs | Public API Docs | Dedicated GRC & Call |
| License Scope & Key Custody Boundary Clear per-tier deployment boundaries: personal devices vs team workspace vs backend nodes | Free Testing | 1 User (3 Devices) | Master Key Isolated | Backend Server Key | OEM / Air-Gap |
| Emergency Key Revocation (KRL) Instant SHA-256 hash invalidation if credentials or tokens are leaked in public code | — | 24h Support KRL | Instant KRL Rotation | Instant KRL Rotation | Fleet Key Rotation |
| Custom DPA & Corporate PO / Invoicing Enterprise Data Processing Agreements, Net 30/60 Invoicing, Wire Transfers | — | Card / PayPal | Card / Apple Pay / Wire | Card / PayPal / Wire | Custom DPA & PO Wire |
Scientifically Proven Zero-Trust Architecture
PrivacyScrubber’s zero-server client memory model is backed by published academic research, legal preprints, and open latency benchmarks.
Zero-Trust Data Sanitization:
The New Compliance Standard.
In the era of Shadow AI, data privacy is no longer just a policy—it's a technical requirement. Most PII scrubbing tools rely on cloud-based APIs, which paradoxically increases your attack surface by sending sensitive records to yet another third-party intermediary.
PrivacyScrubber eliminates this liability with Zero-Trust Data Sanitization (ZTDS). By executing all detection and redaction logic directly inside browser and IDE memory, we guarantee that sensitive client records, health diagnoses, and database keys are sanitized before reaching external models.
Local Processing Power
We parse and extract text from files locally inside your browser sandbox. 0 packets sent.
Airplane Mode Standard
Fully operational offline. No internet connectivity required for data sanitization.
Frequently Asked Questions
.psblueprint configuration files, or Chrome Enterprise Policy GPO. This eliminates internal credential theft, prevents unauthorized key redistribution, and ensures corporate DLP rules remain strictly tamper-proof. npm install @privacyscrubber/sdk or npx @privacyscrubber/mcp-server to test locally in under 30 seconds. The Developer SDK and MCP server include a permanent free quota (15,000 characters General profile and 5,000 characters across all 30 specialized profiles per session). A commercial Developer SDK license ($199/mo or $1,990/yr) is only required when deploying unlimited production nodes, running CI/CD compliance gates, or lifting throughput limits. No hidden fees · Zero recurring telemetry debt · 1 PRO License = Up to 3 Personal Devices (Web + Chrome + Local MCP)
