Chargeback Document Redaction with anonym.plus

Clear customer and account data from a chargeback packet before you send evidence.

In simple terms, PII redaction is the on-device process of finding and masking personally identifiable information in a document before it is shared.

A chargeback packet travels from merchant to acquirer to card scheme, and sometimes to the issuing bank — each link needs a different slice of it, and together they would see everything. PCI DSS v4.0 draws two hard lines on the bundle: no sensitive authentication data (Req. 3.3) and no full PAN where a truncated one will do (Req. 3.4). Where the disputed purchase was made on a credit card between £100 and £30,000, Consumer Credit Act 1974 s.75 makes the card issuer jointly liable alongside the retailer — a fact that shapes what evidence actually matters. Under the Payment Services Regulations 2017, a customer generally has up to thirteen months from the debit date to flag an unauthorised transaction, and an unresolved dispute can be referred to the Financial Ombudsman Service.

When this applies

An online retailer receives a chargeback over a disputed delivery. The evidence bundle includes the delivery note, the order email, the customer's IP address, and — by accident — the full card number from the payment confirmation. That last item does not belong in the packet.

How anonym.plus handles it

  1. Open the bundle in anonym.plus on your device.
  2. Local OCR reads scanned slips and printed emails.
  3. The tool flags card digits, names, and contacts.
  4. Keep the order ID and proof-of-delivery you cite.
  5. Swap or black out the confirmed items.
  6. Save the clean files locally.

What you need to provide

PII & financial identifiers detected

Categoryanonym.plus entity typeExample
AccountCREDIT_CARDending 1111 → [CARD]
NamesPERSONbuyer Hughes → [BUYER]
ContactEMAIL_ADDRESShughes@example.co.uk → [EMAIL]
LocationLOCATIONdelivery address → [ADDRESS]
AmountMONEY£219.00 → [AMOUNT]
DatesDATE_TIMEorder date → [DATE]

Compliance achieved

Anonymise chargeback packets offline — see plans & start free →

Limitations & cautions

A bundle often mixes scans and native files, so OCR may miss a digit on a weak image. Review the flags before you submit. The tool does not judge the merits of a dispute.

Frequently asked questions

Will the order ID survive the pass?

Yes. Allow-list the order ID and delivery proof so they stay while card and customer fields are removed. Those are usually the facts that decide a chargeback, not the buyer's full card number or address.

Why does s.75 of the Consumer Credit Act matter to a chargeback?

Where a purchase between £100 and £30,000 was made on a credit card, s.75 makes the card issuer jointly and severally liable with the retailer for a breach of contract or misrepresentation. That shared liability is often the reason a card issuer, not just the retailer, ends up reviewing the same evidence bundle.

What if the customer disputes it well after the sale?

Under the Payment Services Regulations 2017, a customer generally has up to thirteen months from the debit date to report an unauthorised transaction, and can refer an unresolved complaint to the Financial Ombudsman Service. Keep the transaction reference and date legible so the case stays traceable throughout that window.