NEW RESEARCH: Your Sandbox Is Made of Glass
Read
PII Redaction API
A reversible PII redaction API that swaps sensitive values for deterministic tokens before a prompt leaves your trust boundary — so the model still reasons, the provider never sees plaintext, and one call crypto-shreds the whole flow. It runs inline in the proxy you already point your agents at.
The trade-off nobody should make
[REDACTED]
Delete the value and the model can no longer reason about the entity. Responses come back littered with placeholders you patch by hand, and multi-agent flows lose the thread the moment the data is gone.
<TRT::pii::A3F9>
The same entity renders as the same token across every hop in a flow, so agents reason normally. The original is restored only at egress you trust — and a leaked prompt log on the provider side is worthless without the in-memory salt.
Four hooks in a path you already run
01
Detect
A DLP detector fires on PII, credentials, and your custom regulated categories before the prompt leaves your trust boundary.
02
Tokenize
Each value is replaced with a deterministic-per-flow token. The model sees a coherent prompt it can reason about — not a wall of [REDACTED].
03
Forward
The tokenized prompt goes upstream. The provider — and any prompt log on their side — only ever sees the token.
04
Unmask
On the way back, tokens are restored to plaintext only at egress points your policy explicitly allow-lists. Default-deny.
Control, receipt, shred
Masking is a control surface for HIPAA (de-identification for the duration the data exists in model context), GDPR Art. 4(5) pseudonymization and Art. 17 erasure (the crypto-shred), GLBA, and SOC 2 CC6/CC7 — every mask and unmask decision lands in the same audit telemetry as every other governance action, with the policy id immutably recorded.
This is the developer entry point to the broader reversible masking surface, one of the five verdicts an AI guardrail can return, and every flow binds its manifest hash to a replayable receipt.
FAQ
mask_manifest_hash bound onto the same deterministic-inference receipt as the call — so an auditor can prove which categories were tokenized on which flow without ever seeing the originals.We’ll tokenize live PII before it hits the provider, show the agent reasoning on the tokens, restore the original at egress, and crypto-shred the flow on demand.
Trinitite
AI governance that catches mistakes, proves compliance, and shows the board what it saved—in dollars.
Trinitite is built by Fiscus Flows, Inc.
Product
Solutions
© 2026 Fiscus Flows, Inc. · All rights reserved
Accessibility
The Guardian Standard™