NoPII
Reverse proxy that detects and tokenizes PII before prompts leave the environment and detokenizes LLM responses on return
The product is a reverse proxy that detects and tokenizes personally identifiable information in prompts before they leave the environment and detokenizes it in responses, preventing names, SSNs, emails and other sensitive data from reaching external LLM providers. It sells to developers and IT teams in B2B enterprises, including regulated sectors such as healthcare, finance and legal that need to use third-party AI without exposing PII. It is positioned against building in-house PII infrastructure, offering protection via a one-line base_url change instead of a 6-12 month build.
Key features
- Detect and tokenize PII in requests
- Deterministic format-preserving tokenization
- Forward sanitized payload to LLM providers
- Detokenize and restore LLM responses
- Support for OpenAI Anthropic Google and others
- Native SSE streaming support
- Context phrase neutralization
- Fail-safe blocking on service error
- Configurable vault token expiration
- Full audit trail per request
- PCI Level 1 and SOC 2 Type II infrastructure
- No social media activity within the last 30 days
GTM channels
- Blog
- API
- Docs
ICP
- Security teams
- Engineering teams
- IT teams