Redact PII from documents on your own machine. Nothing is uploaded, ever.
One suite, one promise: PII protection everywhere your data goes. Text, files, audio, conversions, meetings. Fully offline, no accounts, no telemetry. Originals are never touched.
Windows 10 and 11. Protect, the clipboard guard, is free forever and needs no key. Everything else runs on a 15 day trial, then keys from $24.99. Beta, and not code signed yet, so SmartScreen will warn you on first run.
- No cloud
- No accounts
- GDPR-ready
- Fail-closed
Drop it, review it, redact it, and every step is on the record.
One file or a whole folder in bulk. Fully anonymized, or reversible through the vault. Every action is timestamped for audit.
Drag in text, a file, a whole folder, or audio, or scan straight from your screen. Run one document at a time, or point Omit at a folder for bulk. Everything is analyzed on-device.
Detections are grouped and labelled by type: names, emails, IBANs, IDs. Confirm the real ones, clear the false positives, or let Omit run fully automatically. Nothing changes until you say so.
Blackout redaction writes a new copy with the PII removed. Your original is never touched. Or anonymize with reversible tokens you can restore later from the vault.
Copy and audit writtenMeasured against Google Cloud DLP
We built our own benchmark and ran the same corpus through Google Cloud DLP twice: once on its default configuration, and once handed the exact entity types to look for, which is close to a best case for it. Everything below is our Fast tier, the lighter of our two and the one bundled with every install. It misses four of the 34 types and the write-up names all four.
| Measure | Result |
|---|---|
| Entity types Omit caught. Google's best configuration caught 16 of the same 34 | 30/34 |
| Matched or beat Google's best configuration, on the types both tools attempt | 21/21 |
| Of those 34 types, the number Google ships no text detector for at all | 13 |
Four apps, one engine, one promise
Protection everywhere your data moves. Each app shares the same offline redaction engine, the same policy model, and the same promise that nothing leaves the machine.
The flagship redactor for text, email, CSV, Excel, PDF, and images with OCR.
Learn morePrivate voice typing and offline transcription with transcript redaction.
Learn moreLocal file conversion and metadata scrubbing with royalty-free codecs.
Learn moreBot-free recording, local transcription, diarization, and offline AI summaries.
Learn moreYour team is feeding PII to chatbots, one paste at a time.
Every day, employees paste contracts, patient notes, and customer records into ChatGPT, Copilot, and Gemini to save a few minutes. The moment they hit paste, that data leaves the building, into systems you don't control and can't audit. It's the fastest-growing source of quiet data leaks.
Protect is the free part, and everyone gets it
Protect takes personal data out of anything you copy, before it can reach a chatbot, an email or anywhere else. It is free for everyone, permanently, with no key and no account. There is no separate Protect download: it arrives inside Omit Redact.
- 01
Install Omit Redact
The light installer is the small one, and it is everything Protect needs.
- 02
Turn Protect on
It works immediately, free, permanently. Nothing to activate and nothing to pay.
- 03
Start the trial only if you want the rest
Files, the vault and the Accuracy tier run on a 15-day trial you start inside the app.
| Pasting raw into AI | With Omit | |
|---|---|---|
| Where your data goes | Third-party AI servers | Never leaves your device |
| PII exposure | Full: names, IBANs, IDs | Redacted before it leaves |
| Works offline | No | Yes, always |
| Original files | Uploaded as-is | Untouched, a new copy is written |
| Audit trail | None | Per-run HTML report |
Bulk, reversible, and on the record
Paste-and-go for a single item, or sweep an entire folder in bulk. Same engine, same rules, whatever the volume, and scriptable from the CLI for pipelines and CI.
Paste an anonymized output back in and pull the original values from the AES-256 vault. Switch between anonymized and de-anonymized data on demand: raw PII never leaves the device.
Every redaction, anonymization, and de-anonymization is timestamped. Each run generates an HTML report your compliance team can archive.
The leak is not hypothetical
Every figure below comes from an independent report. None of it is us guessing at a problem.
Average cost of a US healthcare data breach, the costliest industry for 14 years running.
IBM Cost of a Data Breach 2025, via HIPAA JournalHealthcare data breaches reported to HHS in 2025, affecting about 138.5 million people.
HHS OCR, via HIPAA Journalof employees paste company data into GenAI prompts like ChatGPT and Copilot.
LayerX Enterprise AI and SaaS Data Security Report, 2025of files uploaded to GenAI tools contain PII or PCI data.
LayerX Enterprise AI and SaaS Data Security Report, 2025Copy-paste has overtaken file transfer as the leading corporate data-exfiltration vector, and file-centric tools cannot see a clipboard paste.
LayerX, via SC MediaThe leak that never sets off an alarm
Before Omit, we worked on Telos, an app where people write down the most personal things about themselves: what they want to change, what they are struggling with, who they are trying to become. Making that product useful meant sending some of that writing to a language model, which is where the problem stopped being abstract. We went looking for something that would take the personal details out first, and what existed either uploaded the text to a cloud service in order to find the names in it, which is the original problem with an extra hop, or was a set of libraries you had to assemble yourself. So we built that step, and the step turned out to be more interesting than the thing we built it for. It is why Omit runs entirely offline. The data never leaves the machine, so there is nothing left for a chatbot, an inbox, or a cloud API to leak. Not a policy you have to trust. A structural fact you can verify yourself, on a network cable you can pull out.
Don't take our word for it. Verify it.
Omit is built to be checked by your IT and compliance team. Pull the plug and watch it keep working. Nothing depends on the network.
Deploy fleet-wide. Prove it to procurement.
Offline rollout, admin policy controls to restrict features across the fleet, volume licensing, and a dedicated Trust Center to link in procurement emails.
Buy a license once. No subscriptions.
Offline license keys. The licence is perpetual and includes 12 months of new versions, no server, ever.
Personal
- Omit Redact, the whole app
- Licensed for personal use only, on one device
- Every entity detector and operator, plus the vault
- The Fast detection tier, not Accuracy
- 12 months of new versions
- Email support
Commercial
- The same Omit Redact, licensed for work, on up to two devices
- Every entity detector and operator, plus the vault
- The Fast and Accuracy detection tiers
- 12 months of new versions
- Priority email support
Full Suite
- All four apps, licensed for work, on up to two devices
- The Suite launcher and its Redaction Hub
- Voice, Convert, Meet and the launcher ship later
- The Fast and Accuracy detection tiers
- 12 months of new versions
- Priority support
Enterprise
- Fleet-wide admin policy controls
- Volume and site licensing
- Offline deployment story
- Dedicated support and SLA
- Trust Center for procurement
Try it right now, free. Keys are on sale.
Questions procurement asks first
Can we use Omit today?
Yes. Omit Redact is in beta and the installer is a free download for Windows 10 and 11. The other apps are coming soon, and macOS is too. Protect, the clipboard guard, is free permanently. File redaction, the vault and the Accuracy tier run on a 15-day trial and then need a key, which is on sale on the pricing page. The beta build is not code signed, so Windows SmartScreen warns the first time you run it.
Does any data leave the device?
No. Detection, redaction, transcription, and summaries all run locally. There is no analytics endpoint and no account.
Can we verify the offline claim ourselves?
Yes. Run Omit on a network-isolated machine and it works unchanged. This is the recommended procurement test, and the Trust Center documents it.
Are our original files safe?
Always. Omit writes new _redacted copies and never modifies the source. Every run produces an HTML audit report of exactly what was changed.
How is it licensed?
Offline license keys signed with Ed25519. Paste a key to activate, with no server contact. Tiers are capability sets inside the signed key.
Is it GDPR and HIPAA-appropriate?
Local-only operation makes most controls inherent rather than aspirational. We are candid in the Trust Center about what is certified versus by-design.