PII anonymization/redaction pass before storage #8

Closed
opened 2026-07-02 17:44:26 +00:00 by JMR-dev · 0 comments
JMR-dev commented 2026-07-02 17:44:26 +00:00 (Migrated from github.com)

Context

Implements the PII-scrubbing requirement of JMR-dev/LibreMail#34: "best effort anonymize the data / remove PII."

Scope

  • Redaction pass run on the report payload before storage: email addresses, auth tokens, names (best-effort), IP addresses.
  • Unit tests covering each redaction category with representative sample inputs.
  • Document that this is best-effort, not a guarantee — matches the privacy posture doc (#12).

Acceptance criteria

  • Given a sample payload containing emails/tokens/IPs, the redaction pass strips or masks them before the payload reaches storage.

Dependencies

Depends on #1 (Worker scaffold). Runs before #9 (storage).

## Context Implements the PII-scrubbing requirement of [JMR-dev/LibreMail#34](https://github.com/JMR-dev/LibreMail/issues/34): "best effort anonymize the data / remove PII." ## Scope - [ ] Redaction pass run on the report payload before storage: email addresses, auth tokens, names (best-effort), IP addresses. - [ ] Unit tests covering each redaction category with representative sample inputs. - [ ] Document that this is best-effort, not a guarantee — matches the privacy posture doc (#12). ## Acceptance criteria - Given a sample payload containing emails/tokens/IPs, the redaction pass strips or masks them before the payload reaches storage. ## Dependencies Depends on #1 (Worker scaffold). Runs before #9 (storage).
Sign in to join this conversation.