Covered on screen
The underlying content may still be present.
3Comp Secure / Redaction & disclosure
A clearer path to securely identify, review and remove sensitive information from documents and emails — with evidence from source to disclosure.
In development · Explore the planned workflow
The information below relates to your request.
A conversation with Alex Example was recorded in the case notes. Please review the third-party information before disclosure.
Follow-up contact: Redacted
Third-party name · Needs contextual review
Automated detection.
Human-controlled decisions.
Built for defensible disclosure
It is a decision about what someone should receive — and what needs to stay protected.
Data subject access requests can bring together correspondence, personal information and details about other people. Privacy and information governance teams need context, considered decisions and a clear record of what was released.
RedactAssura is being designed for that whole journey: DSAR and GDPR disclosure, sensitive information review and the evidence behind the final artefact.
The intended workflow
Six clear stages. One accountable path through the material.
Bring together material in scope and preserve its original context.
Identify potential sensitive information for a reviewer to assess.
Consider the request, third-party information and disclosure context.
Remove selected information from a separate working copy.
Check the disclosure artefact before authorising its release.
Connect the approved disclosure to the decisions behind it.
RedactAssura is in development. The workflow shown is an illustrative product concept; the authenticated redaction application is not yet available.
Detection with context
A suggested match starts a review. It does not make a legal decision.
The planned detection workflow brings possible names, contact details, financial information and custom terms into view. Reviewers consider each finding in context, including information about third parties.
Accept a relevant finding, ignore a false positive, or add a manual redaction. A “redact similar” action would still require the reviewer to consider the other occurrences.
“A conversation with Alex Example was recorded in the case notes.”
Fictional example. The reviewer determines whether this information should be disclosed.
Real redaction
A dark rectangle can hide words on screen while leaving the underlying information recoverable. A disclosure process needs to consider the data in the file, as well as what a viewer displays.
RedactAssura's intended approach is a sanitised disclosure artefact, checked before release. Supported formats, sanitisation behaviour and validation checks will be confirmed as the product is implemented and tested.
Discuss your disclosure requirementsThe underlying content may still be present.
Output validation must confirm removal within the supported format.
Evidence through the workflow
The intended model separates the source, the review workspace and the released disclosure — with an evidence trail connecting them.
Original
The reference point for the review, kept separate from disclosure output.
Working copy
Detect · Review · Redact · Undo
A considered space for decisions.
Released disclosure
A separately checked artefact approved for the intended recipient.
Illustrative audit sequence for the planned product.
For privacy & information governance teams
A focused redaction workflow within your wider response process.
Start with the scope of the request and the material your team has collected. Review the requester's information alongside third-party details, make appropriate disclosure decisions, and check the final output before release.
Your organisation retains responsibility for the response, applicable exemptions and legal judgement. RedactAssura is not a promise of automatic GDPR compliance or a deployed DSAR case-management service.
Read the ICO's guide to subject accessReview personal information with the context of the request in view.
Connect handling decisions, reviewer accountability and disclosure evidence.
Prepare a considered release while keeping source material separate.
Redaction categories
Examples of review categories that inform the product design. These are not a verified detection coverage list.
Names and other identifiers that need a contextual review.
Information about people other than the requester.
Email addresses, telephone numbers and postal addresses.
Account references and financial details within scope.
Potentially sensitive material requiring careful judgement.
Organisation-specific terms and case-specific review criteria.
Security & governance
The planned product is shaped around deliberate handling of sensitive material. Implementation and validation must establish these controls before a live service can make operational assurances.
One Secure family
RedactAssura brings a focused redaction and disclosure proposition to the 3Comp Secure family, alongside privacy governance, security assurance and accountable action.
Explore the 3Comp Secure portfolioTalk to us about the planned RedactAssura workflow, your disclosure challenges and early demonstration availability. Please describe your requirements without sharing documents, DSAR material or sensitive personal data.
Prefer email? Write to [email protected].