Skip to main content

Data Loss Prevention (DLP)

Data Loss Prevention automatically detects and redacts sensitive information in your messages before they reach the AI.

How to turn it on

  1. Click the Honest AI Shield icon in your toolbar
  2. You are on the Shields tab by default
  3. Click the Premium Shield section to expand it
  4. Find "Data Loss Prevention" and flip the toggle to on (the toggle turns coloured when active)

 DLP toggle in Premium Shield section.

What DLP detects

When DLP is on, the extension scans for 30+ supported data types across the categories below.

Data loss prevention - supported data types

Note: Example values illustrate valid formats only. Whether the extension flags a string depends on your policies and implementation.

#CategoryData typeExample
1PIIEmail addressjane.doe@example.com
2PIIUS Social Security Number (SSN)219-09-9999
3PIICanadian Social Insurance Number (SIN)046-454-286
4PIIUK National Insurance Number (NINO)AB123456C
5PIIUK NHS Number943 476 5919 (10-digit, modulus 11 check digit)
6PIIAustralian Tax File Number (TFN)123 456 782
7PIIAustralian Medicare Number2119 43181 1
8PIIIndian Aadhaar4323 2323 2112 (12 digits, Verhoeff checksum)
9PIIIndian PANABCDE1234F
10FinancialCredit card — Visa, Mastercard, Amex, Discover4111 1111 1111 1111 (Visa, Luhn-valid test)
11FinancialIBAN (70 countries)GB82 WEST 1234 5698 7654 32
12Secrets & API keysOpenAI API Keysk-abcdefghijklmnopqrstuvwxyz1234567890123456789012 (48 characters after sk-)
13Secrets & API keysOpenAI Project Keysk-proj-abcdefghijklmnopqrstuvwxyz1234567890123456789012 (sk-proj- + 48 characters)
14Secrets & API keysAnthropic API Keysk-ant-api03-abcdefghijklmnopqrstuvwxyz1234567890ABCDEFGHIJKLMNOPQRSTUVWXYZ
15Secrets & API keysGoogle API KeyAIzaSyDaGmWKH4Od6Jox6t9pfW7tdt92zNx0qjc
16Secrets & API keysAWS Access KeyAKIAIOSFODNN7EXAMPLE
17Secrets & API keysAWS Secret KeywJalrXUtnFEMI/K7MDENG/bPxRfiCYEXAMPLEKEY
18Secrets & API keysGitHub Personal Access Tokenghp_0123456789abcdef0123456789abcdef012345 (36 characters after ghp_)
19Secrets & API keysGitHub OAuth Tokengho_0123456789abcdef0123456789abcdef012345
20Secrets & API keysGitHub User Tokenghu_0123456789abcdef0123456789abcdef012345
21Secrets & API keysGitHub Server Tokenghs_0123456789abcdef0123456789abcdef012345
22Secrets & API keysGitHub Refresh Tokenghr_0123456789abcdef0123456789abcdef012345
23Secrets & API keysStripe live secret keysk_live_51Hxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
24Secrets & API keysStripe test secret keysk_test_4eC39HqLyjWDarjtT1ChupKtK
25Secrets & API keysStripe live publishable keypk_live_51Hxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
26Secrets & API keysStripe test publishable keypk_test_TYooMQauvdEDq54NiTphI7jx
27Secrets & API keysSlack tokenxoxb-123456789012-1234567890123-AbCdEfGhIjKlMnOpQrStUvWx
28Secrets & API keysTwilio API keySKxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
29Secrets & API keysSendGrid API keySG.wxYZ.wxYZwxYZwxYZwxYZwxYZwxYZwxYZwxYZwxYZwxYZwxYZwxYZ
30Generic patternsGeneric API keyapi_key_abcdefghijklmnopqrstuvwxyz1234567890
31Generic patternsGeneric secret keysecret_abcdefghijklmnopqrstuvwxyz1234567890ABCDEF
32Generic patternsGeneric access tokenaccess_token_abcdefghijklmnopqrstuvwxyz1234567890
33NetworkIP address (IPv4 & IPv6)192.0.2.1 (IPv4, documentation range); 2001:db8::1 (IPv6, documentation range)
34CustomUser-defined keywords(your list in Policies)

How to adjust what DLP looks for

The counter next to the DLP toggle (e.g., "5/7") shows how many detection types are currently active out of the total available. To change which types are active:

  1. Go to the Policies tab
  2. Expand "Data Loss Prevention"
  3. You will see two subsections:
    • Privacy Controls — general data types (keywords, secrets, credit cards, emails, IP addresses)
    • Region Specific — government ID numbers for specific countries

Toggle each detection type on or off depending on what matters to you. See Customising DLP Policies for full details.

 DLP policies in Policies tab.

Important

The DLP toggle must be turned ON in the Shields tab for any of these policy toggles to take effect. The Policies tab controls what gets detected; the Shields tab controls whether detection runs at all.