Added to demo agenda!
Talk to our team to learn how Cassidy can help your team with this use case

AI PII/PHI Redaction Agent

Detect and redact sensitive data to ensure compliant document sharing and auditability.
Get a demo
Overview
Custom solution
Agent

Automating PII/PHI Redaction with AI

Automate your entire redaction workflow—from intake and OCR to detection, masking, and auditable production—with redaction automation built for insurance claims.
001
Jurisdiction-aware detection across document types

Hybrid rules and NLP identify SSNs, DOBs, clinical entities, and sensitive identifiers across medical records, adjuster notes, police reports, and mixed-format claim files.

002
Burned-in, defensible outputs with page-level audit trails

Irreversible redactions eliminate the risk of removable overlays, while page-level logs capture every detection, rule trigger, and approval for regulator inquiries and litigation.

003
Human-in-the-loop validation for high-stakes productions

Reviewers resolve ambiguous hits, run Q&A searches like "List all SSNs and pages," and validate outputs before delivery—keeping your team in control of business-critical work.

How Cassidy automates PII/PHI Redaction using AI

Step 1: Ingest and normalize claim files

The Workflow triggers when documents land in a watch folder or claim system. Cassidy pulls the entire claim folder, dedupes files, applies OCR to scanned PDFs and images, and preserves pagination for page-level traceability.

Step 2: Classify documents automatically

Cassidy identifies document types—medical records, FNOL forms, adjuster notes, EOBs, police reports, UB-04/CMS-1500 forms—to apply the right detection rules for each.

Step 3: Detect sensitive data with hybrid rules and NLP

Configurable rule packs combine regex patterns for structured identifiers (SSN, DOB, driver's license, VIN) with NLP-based entity recognition for names, clinical terms, and context-sensitive content. Confidence scoring flags low-certainty hits for review.

Step 4: Apply jurisdiction and line-of-business rule packs

Cassidy applies HIPAA Safe Harbor, CPRA, GDPR, DPPA, and state-specific requirements based on the production type—whether it's a Workers Comp subpoena, vendor share, or reinsurance review.

Step 5: Burn-in redactions and flatten outputs

Irreversible masking is written directly into the output rendition. Hidden content, annotations, and alternate layers are removed to prevent accidental disclosure.

Step 6: Validate with Human-in-the-Loop review

Reviewers use Q&A to verify redactions—"Show all pages with SSNs," "Confirm all DOBs are masked"—and approve or adjust before final production.

Step 7: Export with audit trail and deliver

Cassidy generates paginated redacted PDFs with index sheets and page-level audit logs documenting every detection, rule, confidence score, and approver. Outputs integrate directly with Guidewire, Duck Creek, OnBase, or SharePoint for delivery.

Implement it inside your company

Get help from our team of specialists to quickly integrate this solution into your existing workflow and unlock new growth.
Get a demo
  • Hands-on onboarding and support
  • Self-paced training for your team
  • Dedicated implementation experts
  • Ongoing use case discovery
  • ROI tracking & analytics dashboards
  • Proven playbooks to get started fast

A dedicated team to drive adoption and results

Our implementation experts work hands-on with your team to make sure you see real value - fast. From setup to optimization, we’re here to help every step of the way.

We enable your teams - no IT required

We train your builders, support their workflows, and make sure they get the most out of Cassidy without ever waiting on engineering.

Explore more automations

Move from idea to production with Cassidy