Skip to content

Control, not just speed.

For most teams the alternative is Outlook, shared drives, Adobe, a spreadsheet and people. It is slow, and it cannot answer the questions that come later. This page sets out what changes.

Manual processing and Redactics.

Seven questions a regulator, a tribunal or an internal auditor will ask. What the answer looks like today, and with Redactics.

Have we found everything?
Outlook, drives, Adobe, spreadsheets and peopleSearches repeated across Outlook, drives and case systems by different people. No single record of what was searched.
RedacticsOne collection with a log of every source, search and exclusion, recorded against the case.
Is this the same person?
Outlook, drives, Adobe, spreadsheets and peopleA reviewer notices, or does not, that Dan, D. Okafor and NG-40217 are one person.
RedacticsMentions linked into person records with evidence. Ambiguous matches queued for a decision.
Where did this information come from?
Outlook, drives, Adobe, spreadsheets and peopleA page number in a PDF, if someone wrote it down.
RedacticsSource file, message, attachment, page, paragraph and span on every finding, with the original retained.
Does this contain another person's data?
Outlook, drives, Adobe, spreadsheets and peopleRead every page and hope the second reviewer reads it the same way.
RedacticsThird-party findings grouped by person and role, mixed sentences highlighted, reason templates applied.
Why was this redacted?
Outlook, drives, Adobe, spreadsheets and peopleA black box in a PDF. The reason lives in someone's memory.
RedacticsA reason code on every redaction and a schedule listing all of them.
Who approved the decision?
Outlook, drives, Adobe, spreadsheets and peopleAn email thread, a spreadsheet column, or nothing.
RedacticsReviewer, timestamp and second-reviewer sign-off on every decision.
Can we prove what happened later?
Outlook, drives, Adobe, spreadsheets and peopleReconstruct from mailboxes and memory.
RedacticsExport the append-only audit trail for the case, any time.
Where does skilled time go?
Outlook, drives, Adobe, spreadsheets and peopleSearching, collating, reading and marking up.
RedacticsDeciding the items that need judgement.

Redaction tools and Redactics.

Redaction tools start with a document. Redactics starts with a case. That difference runs through everything else.

Starting point
Document-level redaction toolsA document. You open it, search for terms and mark up what you find.
RedacticsA case. Every source is collected, extracted and linked before anyone opens a document.
Unit of review
Document-level redaction toolsPages and terms.
RedacticsPeople and findings. Everything about the requester in one view; everything about each third party in theirs.
Person resolution
Document-level redaction toolsNone. A name is a string to search for.
RedacticsAliases, identifiers and email addresses resolved into person records with evidence.
Third-party data
Document-level redaction toolsFound by reading. Decided page by page.
RedacticsIdentified, grouped by person and role, decided with recorded reasons.
Scans and handwriting
Document-level redaction toolsOCR if you are lucky. Handwriting is read by a person.
RedacticsPrinted and handwritten pages transcribed with confidence scores and side-by-side verification.
Provenance
Document-level redaction toolsA redaction on a page.
RedacticsA finding with a source span, a decision, a reviewer and a reason.
Audit
Document-level redaction toolsA redaction log, sometimes.
RedacticsAn append-only trail of collection, extraction, resolution, views, decisions and exports.
Output
Document-level redaction toolsA redacted PDF.
RedacticsA disclosure package: bundle, index, redaction schedule, cover summary and the evidence behind it.

Why person resolution matters

A subject access request is a request about a person, not about a set of documents. The question every reviewer has to answer is whether a piece of information is the requester's personal data, someone else's, or both. Document-level tools cannot help with that question because they do not know who anyone is.

Person resolution links every mention across the case, whether a full name, an initial, an email address, an employee number or a phone number, into one record per person. Confident links are automatic and evidenced. Ambiguous ones are queued for a decision. The result is a review organised by person: everything about the requester, and everything about each third party, in one place.

It also catches the mistakes that cause complaints: two people with the same surname treated as one, or one person under four names treated as four.

Why provenance matters

Every decision in a SAR will, sooner or later, be asked to justify itself. The requester may complain. The ICO may ask. A court may order disclosure of the process. The question is always the same: where did this come from, and why did you decide that?

Provenance means every finding points to its source: the file, the message, the attachment, the page, the paragraph and the exact span. It means every decision carries the reviewer, the time and the reason. It means the original is kept beside the extracted text so the chain can be checked.

With provenance, answering the question takes seconds. Without it, answering the question means doing the work again, and hoping the answer is the same.

Why human oversight matters

Redactics does not decide what to disclose. It collects, extracts, classifies, links and suggests, and it records what it did. A named person decides, and the decision is recorded with a reason.

This is a design principle, not a limitation. Disclosure decisions involve judgement about reasonableness, harm and the rights of other people. They belong with the controller, and the controller has to be able to explain them. A system that made those decisions would not remove the accountability; it would make it harder to discharge.

The practical effect is that the searching and sorting, which is most of the time, is done by the platform, and the judgement, which is most of the risk, is done by people with the evidence in front of them.

Why document-level detection is not enough

Many tools can highlight names, dates and email addresses in a document. That is useful for a single file and unhelpful for a case. It tells you that a string appears on page 12. It does not tell you who it refers to, whether the same person appears on page 40 under a different name, or whether the sentence is about the requester, a colleague or both.

A case-level model treats the whole collection as one body of evidence. People are resolved across documents. Findings are classified with context. Third-party material is grouped. Decisions are made once per finding and applied consistently wherever it appears.

That is the difference between a redaction tool and a SAR processing platform, and it is why Redactics is described as personal data discovery rather than redaction.

People/Daniel Okafor

Person record

Daniel Okafor

Data subject. Confidence 98%.

1,963 mentions across 611 sources, from 5 identifiers.

Identifiers linked

5
  • Daniel Okafor

    HR case file

  • d.okafor@northgate-ht.example

    Mailbox export

  • D. Okafor

    OH-assessment-DO-Mar24.pdf

  • Employee NG-40217

    Payroll adjustments Q3.xlsx

  • Dan

    Handwritten margin note

Kept separate D Okafor Deliveries, 54% match. Appears only in supplier invoices. Different address and phone number from the requester.

Person resolution: the requester under five identifiers, and a similar name kept separate for judgement.

Make SARs manageable.

Try Redactics yourself or talk to us about your current process.