EHR Export De-Identification with anonym.plus

Clean bulk EHR exports — columns and free text — without leaving your network.

EHR export de-identification is the removal of PHI from a record extract (CSV, JSON, or a document bundle). The HITECH Act raised the stakes on such exports. anonym.plus de-identifies them on your own device.

When this applies

Analytics and AI work often start with a bulk export of thousands of records. Sending that to a cloud tool is a breach risk under HITECH. Local work avoids it.

How anonym.plus handles it

  1. Point anonym.plus at the export folder on your server.
  2. It scans both ID columns and free-text note fields.
  3. Steady labels keep links across joined rows intact.
  4. Review the summary and tune the column rules.
  5. Save the clean dataset on your device for later use.

What you need to provide

PHI entity types detected

Categoryanonym.plus entity typeExample
NamesPERSONpatient_name → [PATIENT_n]
Record IDsMEDICAL_RECORD_NUMBERmrn field → [MRN_n]
DatesDATE_TIMEadmit_date → shifted [DATE]
ContactEMAIL_ADDRESScontact_email → [EMAIL]
LocationLOCATIONaddress fields → [ADDRESS]
Free textPERSON / LOCATIONinline names → labels

Compliance achieved

Anonymize EHR exports offline — see plans & start free →

Limitations & cautions

Bulk files mix tidy columns with messy free text. Column rules handle the first well. Free-text fields need the same review as any note. Test a sample before a full run, and check that date-shifting keeps the gaps your analysis needs.

Frequently asked questions

Can records stay linkable after the swap?

Yes. A steady label map swaps each ID the same way, so rows for one patient still join while no real identity is left.

Why work locally rather than in the cloud?

Sending raw PHI to a cloud tool is itself a disclosure with breach risk under HITECH. Local work skips that risk.

Does it handle both CSV and document exports?

Yes. Tidy CSV or JSON columns and bundled files are both supported.