How-to
How to anonymize a PDF or Word document before using ChatGPT
Work on a copy: replace each name, ID number and address with a consistent token such as [PERSON_001], review the full copy line by line, then give ChatGPT only that reviewed copy. Keep the key to the tokens private so you can restore the real details afterwards. Strictly, that is pseudonymizing, not anonymizing: ChatGPT sees the case, not the client, but the copy is still personal information in your hands.
Last reviewed · 3 sources
Steps
01
Copy the document
Keep the original private and work on a copy.
02
Replace personal details
Use consistent placeholders such as [PERSON_001].
03
Review everything
Read the full copy, including headers, tables and signatures.
04
Share and restore
Share only the reviewed copy, then restore the real details in the answer.
Step 1: work from a copy, not the original
Never edit the only copy of a client document. Make a working copy, and keep the original somewhere ChatGPT never sees. If the document is a scan, you need its text first, which means OCR, and OCR mistakes can hide names from simple search.
Step 2: replace details consistently
Replace people, organisations, addresses, emails, phone numbers, dates of birth and ID numbers with typed placeholders. Consistency matters more than style: the same person must get the same placeholder every time, or ChatGPT will treat them as different people and its answer will be wrong.
Keep a private key, such as [PERSON_001] = the client, stored with the original and never pasted into the chat.
Step 3: review the whole copy
Read the entire redacted copy, not just the highlighted changes. Look at headers, footers, signatures, tables and file names, where details often survive. The Law Society of Ontario’s white paper warns that even anonymized facts can sometimes be pieced back together, so remove unusual identifying facts too.
Step 4: share only the reviewed copy, then restore
Paste the reviewed text or upload the reviewed file. Ask ChatGPT to keep the placeholders exactly as written. When the answer comes back, replace each placeholder with the real detail using your private key, and check any placeholder ChatGPT changed, merged or dropped.
Remember that the AI provider still processes what you share. Replacing identifiers reduces what it receives; it does not change the provider’s terms.
Anonymized or pseudonymized: why the word matters
A copy is anonymous only if nobody can link it back to the person. A copy with tokens and a private key is pseudonymized: you can reverse it, which is the point, because you want the real names back in the finished document. Privacy regulators in Canada, the EU and the UK treat pseudonymized text as personal information in the hands of whoever holds the key.
What changes is who can read the identities. ChatGPT receives the facts with the names and numbers swapped out and has no way to reverse the tokens. The key stays with you. That is a real reduction in what you disclose, but your confidentiality and consent obligations still apply to the copy.
Where PiBye fits
How PiBye handles this
PiBye does these four steps on your Mac for PDFs (including scans), Word .docx, Markdown and text files. It keeps your original unchanged in a private Vault, finds names, ID numbers, addresses and postal codes, lets you approve each replacement, and gives you a reviewed Markdown copy to paste into ChatGPT.
PiBye pseudonymizes rather than anonymizes, on purpose: the key to the tokens never leaves your Mac, so ChatGPT cannot reverse them and you can. Bring ChatGPT’s work back and PiBye restores the real details into the finished document, flagging stand-ins that were altered or missing.
1.0.1 · macOS 14.8.5 or later · Apple Silicon · 1.1 GB
Frequently asked questions
Can I just ask ChatGPT to anonymize the document for me?
That sends the original, names and all, to ChatGPT first, which is the exposure you were trying to avoid. Strip identifiers before the document reaches the AI.
Does anonymizing make using ChatGPT compliant?
No tool makes a use compliant. Replacing identifiers with tokens reduces the personal information you disclose; it does not replace your own judgment on confidentiality and client consent.
Is a copy with placeholders anonymous?
No. As long as a key exists, it is pseudonymized and still personal information for you. The AI provider gets the facts without the identities and cannot reverse the tokens; the key should never go into the chat.
Sources
- Licensee use of generative artificial intelligence (white paper), Law Society of Ontario, April 2024. Checked 17 September 2026.
- Generative AI: Your professional obligations, Law Society of Ontario, April 10, 2024. Checked 17 September 2026.
- Principles for responsible, trustworthy and privacy-protective generative AI technologies, Office of the Privacy Commissioner of Canada, December 7, 2023. Checked 17 September 2026.