EAP Referral Record Redaction with anonym.plus

Strip the identifiers from an EAP intake before any aggregate report.

In simple terms, PII redaction is the on-device process of finding and masking personally identifiable information in a document before it is shared.

EAP referral record redaction is the removal of special category identifiers from an employee assistance programme intake. The presenting issue is data concerning health under UK GDPR Art. 9(1), and counselling material also attracts the common-law duty of confidence. Where the provider acts on your instructions it is a processor, so the written terms in Art. 28(3) apply. anonym.plus marks each identifier on your device.

When this applies

Such an intake names the worker, a presenting issue, an NI number, and contact lines. You strip those identifiers before any aggregate report on programme use goes to the board.

How anonym.plus handles it

  1. Open the file in anonym.plus on your device.
  2. Local OCR reads a scanned intake page if needed.
  3. The tool flags names, the issue note, and contacts.
  4. Keep the de-identified category a report needs.
  5. Swap or black out the confirmed items.
  6. Save the de-identified copy locally.

What you need to provide

PII entity types detected

Categoryanonym.plus entity typeExample
NamesPERSONemployee A. Marsh → [EMPLOYEE]
HealthMEDICAL_CONDITIONpresenting issue → [CONDITION]
NI numberUK_NINOQQ 20 19 77 C → [NINO]
DatesDATE_TIMEintake 04/2026 → [DATE]
ContactPHONE_NUMBER+44 20 7946 1180 → [PHONE]
ContactEMAIL_ADDRESSa.marsh@example.co.uk → [EMAIL]

Compliance achieved

Anonymise EAP referral records offline — see plans & start free →

Limitations & cautions

The tool removes direct identifiers, yet a rare issue plus a small team can still hint at a person. Review such notes before sharing, and apply the ICO motivated-intruder test for high-risk cases.

Frequently asked questions

Should an employer see EAP intake detail at all?

Usually not. The presenting issue is Art. 9 health data held in confidence by the provider; the employer normally needs counts and categories. De-identifying the copy you hold makes that boundary real.

What contract does an EAP provider need?

If it processes on your documented instructions, UK GDPR Art. 28(3) requires written terms covering purpose, duration, security, and deletion. Some providers act as controllers for the clinical record instead — confirm which before you send anything.

Is the file uploaded?

No. The app runs offline, so the intake stays on your device.