Data protection

Protecting personal data in chat

Custodos replaces or blocks sensitive details before your message reaches a model, and shows you exactly what was sent.

When you type names, IBANs or phone numbers into a message, Custodos checks the text before it leaves the server. Depending on your workspace's setting, detected details are replaced with placeholders or the message is not sent at all.

The protection mode is set by your workspace admins. How that works is described in Configuring data protection.

Which mode applies in your workspace

ModeWhat happens to your message
PseudonymiseDetected details are replaced with placeholders such as <NAME_1> before sending and restored in the reply. Nothing is refused, and images can be attached.
BlockA message containing an AHV number, IBAN, card number, UID number or a match for a workspace rule is not sent. Names, addresses, email addresses and phone numbers go out unchanged. Images cannot be attached.
OffNo scanning. Messages are sent exactly as you typed them.

New workspaces start with Pseudonymise, and the settings recommend this mode. You can see which mode applies to you in two places:

  • Below the input field, Protected appears with a shield as soon as Pseudonymise or Block is active.
  • In your account, the How your data is handled here section names the protection mode.

These categories are detected unless your admin has switched one of them off: names, addresses, birth dates (only after a cue such as "born on"), AHV numbers, IBANs, card numbers, UID numbers, email addresses, phone numbers, reference numbers (for example after "customer number" or "invoice number"), and matches for workspace rules your admins have written.

Sending a pseudonymised message

Write your message

Write as usual, for example: "Draft a friendly payment reminder to Andrea Sutter at Holzwerk Brunner GmbH. Our IBAN is CH93 0076 2011 6238 5295 7." As you type, detected values are highlighted in the input field.

A typed payment reminder with the name and IBAN marked, and the notice below that sensitive values will be pseudonymised before sending.

Open the hint

A hint such as 2 sensitive values detected (IBAN, name) appears below the input field. Click it. The review panel opens beside the chat and lists every value by category.

The review panel beside the chat with the detected name and IBAN, both ticked, and the “Deselect all” link.

Check and adjust the values

Every value has a tick. Ticked means the value will be pseudonymised. Remove the tick and the value is sent exactly as you typed it.

If a value is missing, select it in your message. While the selection stands, a button Pseudonymise “Mandate 4711” appears in the bar below the text; one click is enough. This works even when Custodos detected nothing else in the message. The review panel offers the same, or you type the value into the Add a value… field.

Send

Send the message. The model receives "…to <NAME_1> at Holzwerk Brunner GmbH. Our IBAN is <IBAN_1>." Below your message you see 2 details pseudonymised before sending. Show what the model received shows the placeholders, and Show original switches back to your text.

Read the reply

If the model uses placeholders, Custodos puts the original values back into the reply on your screen. Below it you see, for example, 2 values reinserted into the reply. Show what the model wrote shows the reply with placeholders.

The sent message with its pseudonymisation note and the model’s payment reminder showing the real name and IBAN.

The review panel in detail

ElementMeaning
TickedThe value will be pseudonymised.
Unticked, value struck throughThe value is sent unchanged (Send original).
LockFixed by a workspace rule. This value cannot be deselected.
Deselect all / Pseudonymise allSwitch all values at once, except locked ones.
In attachmentsValues from attached files, grouped by file name.
Added manuallyValues you added yourself. The cross removes them again.

Press Esc to close the panel. Your choices apply to the whole chat, even after reloading. A new chat starts afresh with every value detected again. In security mode no value can be deselected.

When your workspace blocks

In Block mode, hard identifiers (AHV number, IBAN, card number, UID number) and workspace rule matches are highlighted in yellow. The hint below the input field starts with Contains protected data (IBAN), and the review panel is titled Protected data detected. Remove takes a value out of your text.

A workspace in “Block” mode: the IBAN in the message box is marked and the notice below says the message is blocked.

If you send anyway, the message is refused. The notice starts with something like "This message contains IBAN data." and says what you can do. A file containing such details is not imported, and images cannot be attached at all in this mode.

Files, images and integrations

  • Files are scanned when you attach them. Detected values are listed in the review panel under In attachments and are pseudonymised every time the file goes out with a message. More in Attaching files and images.
  • Images cannot be read by any detection. In Pseudonymise mode an image goes to the model unchanged. In Block mode and in security mode, images are refused.
  • Emails and cloud files the model reads through an integration are treated like an attachment: pseudonymised or, in Block mode, withheld.
  • Company Brain has its own data protection level per brain. Your choices in the review panel do not apply there. See Data protection in a brain.

Limits of detection

Detection works with fixed patterns and a list of first names. A name is replaced when first and last name stand together ("Anna Weber") or a salutation precedes it ("Mrs Weber"); a first name on its own ("Hi Anna") stays. It does not understand the text and can be wrong in both directions:

  • It can miss names, for example a surname without a salutation, as in "Sutter called".
  • It can replace too much, for example "Sandra Meier" in "Sandra Meier Ltd", because it looks like a person's name. Well-known product and model names such as "Claude Opus" are not replaced.
  • It recognises birth dates and reference numbers only when a cue word comes before them.
  • It never checks what is shown in an image.

Glance at the highlighted values before sending and add whatever is missing: select the value, click Pseudonymise …. This works even when Custodos detected nothing else in the message; the review panel opens as soon as the first value is there.

Best practices

  • Refer to people with a salutation or their full name ("Ms Keller", "Andrea Sutter"). They are then detected more reliably.
  • Untick a company or product name that was replaced by mistake. The choice holds for the rest of the chat.
  • Add internal identifiers that have no cue word, such as a mandate number, with Add a value…. If a pattern comes up often, ask your admin for a workspace rule.
  • Black out personal data on screenshots before attaching them.

Frequently asked questions

Next steps

On this page