Structured Data Production De-Identification with anonym.plus

Turn a database export into an anonymous file that sits outside GDPR scope.

In simple terms, PII redaction is the on-device process of finding and masking personally identifiable information in a document before it is shared.

Structured-data de-identification is the removal of personal detail from a database export. FRCP 34(a)(1)(A) reaches data compilations, so the export is discoverable. GDPR Recital 26 puts truly anonymous output beyond the regulation. anonym.plus does the pass locally.

When this applies

Dropping the name and ID columns is not the finish line. A rare combination — a birth date with a postcode and a job title — can still single out one row. Art. 4(5) keeps pseudonymous output in scope, because a key can re-link it.

How anonym.plus handles it

  1. Point anonym.plus at the export on your device.
  2. It maps ID fields and free-text values.
  3. The tool flags names, IDs, and contacts per field.
  4. Swap them with the reversible map turned off.
  5. Confirm no re-link key is left behind.
  6. Save the anonymous dataset on your device.

What you need to provide

PII entity types detected

Categoryanonym.plus entity typeExample
NamesPERSONname field → [PERSON_n]
IdentifiersUS_SSNssn field → [SSN]
ContactEMAIL_ADDRESSemail field → [EMAIL]
DatesDATE_TIMEdob field → [DOB]
LocationLOCATIONaddress field → [ADDRESS]
AccountUS_BANK_NUMBERaccount field → [ACCOUNT]

Compliance achieved

Anonymize structured datasets offline — see plans & start free →

Limitations & cautions

True anonymity is a high bar. A unique row, like one rare value in a small group, can re-identify even after direct IDs go. If you keep a reversible key, the data is pseudonymous and stays in scope. Weigh the residual risk first.

Frequently asked questions

Does dropping the ID column make the export anonymous?

Not by itself. Quasi-identifiers such as date of birth, postcode, and job title can still single out a row once combined. Recital 26 asks about the means reasonably likely to be used, so check group sizes on those columns before you hand it over.

Anonymous or pseudonymous — what is the difference?

Pseudonymous output keeps a key that can re-link rows, so it stays personal data. Anonymous output drops that key for good.

Does it read SQL dumps?

Yes. CSV, JSON, and SQL exports are supported, with a field map for known IDs.