Skip to content
Enterpret Help Center home

Managing Personal Identifiable Information (PII) in Enterpret

PII, or personally identifiable information, is anything in a feedback record that could identify a specific person, like an email address, phone number, or credit card. Enterpret automatically detects and masks this kind of data the moment it comes in, so your team can analyse feedback without exposing sensitive information or running into compliance risks. This article walks through how that works, what gets masked by default, and the extra controls available if your organisation has specific privacy or regulatory needs.

At Enterpret, we understand the critical importance of privacy and data security. Given that Enterpret natively integrates with numerous third-party platforms, it's essential to address the potential presence of Personal Identifiable Information (PII) in the feedback content we ingest. This article outlines how Enterpret handles PII to ensure the highest standards of data protection.

PII Redaction

Enterpret employs a proactive approach to safeguarding sensitive information by default. Upon ingestion, our system automatically identifies and redacts any PII from the feedback content before it is stored or processed further within our systems. This means PII is effectively removed from the data stream at the point of entry, minimizing the risk of unauthorized access or misuse.

To achieve this, Enterpret leverages a robust, in-house-built library designed specifically for PII detection and redaction. This library is continuously updated and refined to ensure accuracy and compliance with evolving privacy regulations.

Supported PII Entity Types

Enterpret detects and masks 21 types of PII automatically at ingestion time, before data is stored in the Knowledge Graph:

  1. Email addresses - Personal and corporate email addresses

  2. Phone numbers - Domestic and international phone numbers

  3. IP addresses - IPv4 and IPv6 addresses

  4. Credit card numbers - Visa, Mastercard, American Express, and other card types

  5. IBAN - International Bank Account Numbers

  6. Street addresses - Full mailing addresses

  7. ZIP codes - Postal/ZIP codes

  8. PO boxes - Post office box numbers

  9. Social Security Numbers (SSN) - US SSN format

  10. MAC addresses - Media Access Control addresses

  11. GUIDs - Globally Unique Identifiers

  12. MD5 hashes - MD5 hash values

  13. SHA1 hashes - SHA1 hash values

  14. SHA256 hashes - SHA256 hash values

  15. URLs - Web addresses and links

  16. Git repositories - GitHub and Git repository URLs

  17. Dates - Calendar dates in various formats

  18. Times - Time values in various formats

  19. Bitcoin addresses - Cryptocurrency wallet addresses

  20. ISBN numbers - International Standard Book Numbers

  21. Additional entity types - Specialized identifiers based on context

The library operates at ingestion time, scrubbing PII before data is stored. Masked values appear as placeholders in the feedback data (for example, [EMAIL_ADDRESS], [PHONE_NUMBER]).

Admin Configuration

Admins can configure which PII types are masked for their workspace through the workspace settings. This allows organizations to customize PII handling based on their specific privacy and compliance requirements.

Customizable Controls: Ingestion Blockers and Ingestion Scrubbers

In addition to our default PII redaction mechanism, Enterpret offers users further flexibility and control over their data with two key features: Ingestion Blockers and Ingestion Scrubbers.

Ingestion Blockers

Ingestion Blockers empower users to define rules that prevent certain feedback records from being ingested into Enterpret based on specific criteria. This allows organizations to proactively exclude feedback containing sensitive information or data that falls outside their desired scope.

Ingestion Scrubbers

Enterpret's Ingestion Scrubbers provide users with the ability to remove specific metadata values or parts of the feedback content according to predefined rules. This granular control enables organizations to customize the data ingestion process further, tailoring it to their unique privacy and security requirements.

Benefits of PII Management in Enterpret

By leveraging these integrated features, Enterpret users gain comprehensive control over their data ingestion processes, ensuring compliance with regulatory standards and safeguarding sensitive information effectively.

  • Enhanced Privacy: Reduces the risk of PII exposure and unauthorized access to sensitive data.

  • Regulatory Compliance: Meets stringent data protection requirements and industry standards.

  • Customizable Controls: Tailors data ingestion rules to align with organizational policies and priorities.

  • Automated Detection: Automated PII detection at ingestion time means sensitive information never reaches your Knowledge Graph.

  • Risk Mitigation: Proactively identifies and excludes potentially sensitive information from the feedback dataset.

Additional Privacy Controls

For per-user privacy controls and additional privacy management features, see the User Privacy API documentation.

Conclusion

At Enterpret, we prioritize the privacy and security of our users' data. Through a combination of advanced PII redaction techniques using automated detection and customizable ingestion controls, we empower organizations to manage their data securely while deriving valuable insights from feedback analytics. If you have any further questions or concerns regarding PII management in Enterpret, please reach out to our support team for assistance.