Litigation Hold Document Redaction with anonym.plus

Clear unrelated patient data from held documents before review.

In simple terms, PII redaction is the on-device process of finding and masking personally identifiable information in a document before it is shared.

Litigation-hold redaction is the removal of personal information not relevant to a matter from held documents. Standard disclosure under CPR r.31.6 requires a party to disclose documents it relies on and documents that adversely affect or support any party's case — nothing wider than that. anonym.plus runs on your device, so non-party identifiers that fall outside r.31.6 go while the disclosable facts stay.

When this applies

A hold pulls charts and emails, often in a claim handled through NHS Resolution, that also mention unrelated patients and staff. Before review by outside solicitors, that non-party information — outside the scope CPR r.31.6 actually requires — is cleared on-site.

How anonym.plus handles it

  1. Load the held documents into anonym.plus on your device.
  2. Local OCR reads scanned correspondence first.
  3. It flags non-party patient and staff names plus dates.
  4. Confirm which parties are in scope and keep them.
  5. Swap or black out the unrelated personal information.
  6. Save the reviewed set. Source files stay local.

What you need to provide

Patient data entity types detected

Categoryanonym.plus entity typeExample
PatientPERSONnon-party D. Acos → [THIRD_PARTY]
StaffPERSONcc’d RN Weiss → [STAFF]
DatesDATE_TIMEemail 07/2025 → [DATE]
ContactEMAIL_ADDRESSrn.weiss@example.nhs.uk → [EMAIL]
Record IDsMEDICAL_RECORD_NUMBERNHS No. 220 771 4419 → [NHS_NUMBER]
NetworkIP_ADDRESS192.168.4.11 → [IP]

Compliance achieved

Anonymise litigation hold documents offline — see plans & start free →

Limitations & cautions

A hold must stay defensible, so never remove information pertinent to the matter. The tool flags personal items; you decide which parties are in scope. Keep a clear log of what was cleared and why, and confirm with solicitors.

Frequently asked questions

What does standard disclosure actually require?

CPR r.31.6 requires a party to disclose the documents it relies on, and documents that adversely affect its own case, adversely affect another party's case, or support another party's case. It doesn't require disclosing every unrelated patient or staff name that happens to appear in the same file, which is what this redaction targets.

Won’t redaction spoil disclosure?

No, if you keep all in-scope parties. The tool lets you mark who stays, so only unrelated names and identifiers go, and the material CPR r.31.6 actually requires is untouched.

Are email headers and IPs handled?

Yes. Addresses, IPs, and timestamps in email are flagged along with names in the body.