Skip to content
Available now, in beta

Redact PII from documents on your own machine. Nothing is uploaded, ever.

One suite, one promise: PII protection everywhere your data goes. Text, files, audio, conversions, meetings. Fully offline, no accounts, no telemetry. Originals are never touched.

Windows 10 and 11. Protect, the clipboard guard, is free forever and needs no key. Everything else runs on a 15 day trial, then keys from $24.99. Beta, and not code signed yet, so SmartScreen will warn you on first run.

  • No cloud
  • No accounts
  • GDPR-ready
  • Fail-closed
Nothing leaves your deviceNo cloud, no accounts, no telemetry, all verifiable.
Originals never modifiedOutput always goes to new _redacted files.
Fail-closedUncertain? Omit refuses rather than leaks.
Auto by defaultOne-click redaction, optional human review.

Drop it, review it, redact it, and every step is on the record.

One file or a whole folder in bulk. Fully anonymized, or reversible through the vault. Every action is timestamped for audit.

01
Ingest
Drop it

Drag in text, a file, a whole folder, or audio, or scan straight from your screen. Run one document at a time, or point Omit at a folder for bulk. Everything is analyzed on-device.

02
Verify
Review it

Detections are grouped and labelled by type: names, emails, IBANs, IDs. Confirm the real ones, clear the false positives, or let Omit run fully automatically. Nothing changes until you say so.

03
Output
Redact or anonymize

Blackout redaction writes a new copy with the PII removed. Your original is never touched. Or anonymize with reversible tokens you can restore later from the vault.

Copy and audit written

Measured against Google Cloud DLP

We built our own benchmark and ran the same corpus through Google Cloud DLP twice: once on its default configuration, and once handed the exact entity types to look for, which is close to a best case for it. Everything below is our Fast tier, the lighter of our two and the one bundled with every install. It misses four of the 34 types and the write-up names all four.

Omit measured against Google Cloud DLP across 34 entity types
MeasureResult
Entity types Omit caught. Google's best configuration caught 16 of the same 3430/34
Matched or beat Google's best configuration, on the types both tools attempt21/21
Of those 34 types, the number Google ships no text detector for at all13

Your team is feeding PII to chatbots, one paste at a time.

Every day, employees paste contracts, patient notes, and customer records into ChatGPT, Copilot, and Gemini to save a few minutes. The moment they hit paste, that data leaves the building, into systems you don't control and can't audit. It's the fastest-growing source of quiet data leaks.

What the chatbot actually receives
Summarize this: client [PERSON_1], email [EMAIL_1], IBAN ****0130...
Redacted by Protect on Ctrl+V
ChatGPTCopilotGeminiClaudeMistral
Free forever

Protect is the free part, and everyone gets it

Protect takes personal data out of anything you copy, before it can reach a chatbot, an email or anywhere else. It is free for everyone, permanently, with no key and no account. There is no separate Protect download: it arrives inside Omit Redact.

  1. 01

    Install Omit Redact

    The light installer is the small one, and it is everything Protect needs.

  2. 02

    Turn Protect on

    It works immediately, free, permanently. Nothing to activate and nothing to pay.

  3. 03

    Start the trial only if you want the rest

    Files, the vault and the Accuracy tier run on a 15-day trial you start inside the app.

Where your data goes
Third-party AI servers
Never leaves your device
PII exposure
Full: names, IBANs, IDs
Redacted before it leaves
Works offline
No
Yes, always
Original files
Uploaded as-is
Untouched, a new copy is written
Audit trail
None
Per-run HTML report

Bulk, reversible, and on the record

Single file or bulk
One document, or ten thousand.

Paste-and-go for a single item, or sweep an entire folder in bulk. Same engine, same rules, whatever the volume, and scriptable from the CLI for pipelines and CI.

invoices/142 files
patient-notes/88 files
processing 230, on-device
Reversible vault
Anonymize now, restore later.

Paste an anonymized output back in and pull the original values from the AES-256 vault. Switch between anonymized and de-anonymized data on demand: raw PII never leaves the device.

vault
unlock
Full audit trail
Every action, on the record.

Every redaction, anonymization, and de-anonymization is timestamped. Each run generates an HTML report your compliance team can archive.

09:24:01 redact 12 spans
09:24:07 anonymize vault +12
11:02:44 de-anonymize 3 spans
report.html signed

The leak is not hypothetical

Every figure below comes from an independent report. None of it is us guessing at a problem.

$7.42M

Average cost of a US healthcare data breach, the costliest industry for 14 years running.

IBM Cost of a Data Breach 2025, via HIPAA Journal
772

Healthcare data breaches reported to HHS in 2025, affecting about 138.5 million people.

HHS OCR, via HIPAA Journal
77%

of employees paste company data into GenAI prompts like ChatGPT and Copilot.

LayerX Enterprise AI and SaaS Data Security Report, 2025
40%

of files uploaded to GenAI tools contain PII or PCI data.

LayerX Enterprise AI and SaaS Data Security Report, 2025
No. 1

Copy-paste has overtaken file transfer as the leading corporate data-exfiltration vector, and file-centric tools cannot see a clipboard paste.

LayerX, via SC Media

The leak that never sets off an alarm

Before Omit, we worked on Telos, an app where people write down the most personal things about themselves: what they want to change, what they are struggling with, who they are trying to become. Making that product useful meant sending some of that writing to a language model, which is where the problem stopped being abstract. We went looking for something that would take the personal details out first, and what existed either uploaded the text to a cloud service in order to find the names in it, which is the original problem with an extra hop, or was a set of libraries you had to assemble yourself. So we built that step, and the step turned out to be more interesting than the thing we built it for. It is why Omit runs entirely offline. The data never leaves the machine, so there is nothing left for a chatbot, an inbox, or a cloud API to leak. Not a policy you have to trust. A structural fact you can verify yourself, on a network cable you can pull out.

Don't take our word for it. Verify it.

Omit is built to be checked by your IT and compliance team. Pull the plug and watch it keep working. Nothing depends on the network.

Read the full Trust Center
Local-only operationAll detection and redaction runs on-device, always.
No telemetryWe collect nothing. There is no analytics endpoint to disable.
Verify it yourselfRun Omit on a network-isolated machine. It works unchanged.
Unsigned while in betaThe first public build carries no code-signing certificate, so Windows warns on it.

Deploy fleet-wide. Prove it to procurement.

Offline rollout, admin policy controls to restrict features across the fleet, volume licensing, and a dedicated Trust Center to link in procurement emails.

Restrict features fleet-wide with respectful admin-managed states.
Offline installers. No machine ever needs internet.
European data residency is inherent: data never moves.
Dedicated account manager, SLA, and rollout assistance.

Buy a license once. No subscriptions.

Offline license keys. The licence is perpetual and includes 12 months of new versions, no server, ever.

Personal

$24.99one-time
Buy Personal
  • Omit Redact, the whole app
  • Licensed for personal use only, on one device
  • Every entity detector and operator, plus the vault
  • The Fast detection tier, not Accuracy
  • 12 months of new versions
  • Email support
Recommended

Commercial

$149.99one-time
Buy Commercial
  • The same Omit Redact, licensed for work, on up to two devices
  • Every entity detector and operator, plus the vault
  • The Fast and Accuracy detection tiers
  • 12 months of new versions
  • Priority email support

Full Suite

$199one-time
Get notified
  • All four apps, licensed for work, on up to two devices
  • The Suite launcher and its Redaction Hub
  • Voice, Convert, Meet and the launcher ship later
  • The Fast and Accuracy detection tiers
  • 12 months of new versions
  • Priority support

Enterprise

Custom
Talk to us
  • Fleet-wide admin policy controls
  • Volume and site licensing
  • Offline deployment story
  • Dedicated support and SLA
  • Trust Center for procurement

Try it right now, free. Keys are on sale.

Questions procurement asks first

Can we use Omit today?

Yes. Omit Redact is in beta and the installer is a free download for Windows 10 and 11. The other apps are coming soon, and macOS is too. Protect, the clipboard guard, is free permanently. File redaction, the vault and the Accuracy tier run on a 15-day trial and then need a key, which is on sale on the pricing page. The beta build is not code signed, so Windows SmartScreen warns the first time you run it.

Does any data leave the device?

No. Detection, redaction, transcription, and summaries all run locally. There is no analytics endpoint and no account.

Can we verify the offline claim ourselves?

Yes. Run Omit on a network-isolated machine and it works unchanged. This is the recommended procurement test, and the Trust Center documents it.

Are our original files safe?

Always. Omit writes new _redacted copies and never modifies the source. Every run produces an HTML audit report of exactly what was changed.

How is it licensed?

Offline license keys signed with Ed25519. Paste a key to activate, with no server contact. Tiers are capability sets inside the signed key.

Is it GDPR and HIPAA-appropriate?

Local-only operation makes most controls inherent rather than aspirational. We are candid in the Trust Center about what is certified versus by-design.