A fraud case file records a suspected scheme and the people tied to it. The conduct is measured against the Fraud Act 2006: false representation under s.2, failing to disclose under s.3, and abuse of position under s.4. UK GDPR Recital 26 puts data outside the regulation only when nobody can be singled out again. anonym.plus removes names, identifiers, and contacts on your device.
When this applies
A risk team wants a year of closed files to spot repeat methods. DPA 2018 s.171 makes it an offence to re-identify data that was de-identified without consent. Sharing a case to the National Fraud Database runs on a different footing, the condition in DPA 2018 Sch. 1 Part 2 para 14. Analysts see the method, not the people.
How anonym.plus handles it
- Open the file in anonym.plus on your device.
- Local OCR reads scanned evidence pages.
- The tool flags victim, suspect, and contact data.
- Turn the name map OFF for true anonymity.
- Replace each identifier with a label.
- Save the clean copy locally.
What you need to provide
- The dossier (PDF, DOCX, or scan).
- An operator (Replace, with the name map off).
- Optional batch for many closed files.
PII & financial identifiers detected
| Category | anonym.plus entity type | Example |
|---|---|---|
| Names | PERSON | victim K. Bauer → [VICTIM] |
| Names | PERSON | suspect noted → [SUSPECT] |
| Financial | UK_BANK_NUMBER | acct 1190 → [ACCOUNT] |
| Money | MONEY | £7,300 loss → [AMOUNT] |
| Contact | EMAIL_ADDRESS | k.bauer@example.co.uk → [EMAIL] |
| Dates | DATE_TIME | DOB 1984 → [DOB] |
Compliance achieved
- Conduct is tested against Fraud Act 2006 s.2, s.3, and s.4.
- False accounting is a separate offence under Theft Act 1968 s.17.
- Anonymity is judged on UK GDPR Recital 26 and the wording of DPA 2018 s.3(2).
- DPA 2018 s.171 makes re-identification an offence, so keep the reversible map off.
- Sharing to a national database runs on DPA 2018 Sch. 1 Part 2 para 14.
Anonymise closed case files offline — see plans & start free →
Limitations & cautions
Under Recital 26 the data stays personal while anyone can re-identify it. A reversible name map defeats anonymity, so switch it off. A unique loss amount plus a date can still single someone out, so review free text yourself.
Frequently asked questions
When is such a file truly anonymous under UK GDPR?
Recital 26 says only when nobody can be singled out again. Turn off the name map and check free-text clues to reach that bar.
Does the reversible map break anonymity?
Yes. A key that re-links names keeps the data personal. DPA 2018 s.171 also makes re-identifying de-identified data an offence, so switch the map off.
Which Fraud Act 2006 section applies?
S.2 covers a false representation, s.3 a failure to disclose information you had a duty to disclose, and s.4 an abuse of position. That analysis stays readable while the names go.