Detect locally
Structured identifiers, names, addresses, organisations, references and supported secrets are detected on the client.
Development preview
Vera X-Ray is IamVERA's client-local privacy layer. It detects sensitive information before AI processing, lets you review exactly what should be protected, and replaces approved values with document-bound tokens. Vera works on the context you release; X-Ray restores authorised values after the answer returns.
Client-local processing · PDF & OCR · Dutch & English · Optional local AI · Human review before release
Dear Mrs Jansen,Your account NL91 ABNA 0417 1643 00is referenced in case 05/123456-31.
Dear ⟦XRAY:E1:a71c…⟧,Your account ⟦XRAY:E2:19bd…⟧is referenced in case ⟦XRAY:E3:f821…⟧.
Mrs JansenNL91 ABNA 0417 1643 0005/123456-31
Vera X-Ray is a client-local privacy layer for professional AI workflows. It analyses documents on the client, detects sensitive values, lets the user review the findings, and replaces approved values with opaque tokens or removes supported secrets before the context enters Vera. After Vera responds, authorised values can be restored using the protected local X-Ray mapping.
X-Ray reduces unnecessary disclosure. It does not guarantee that every sensitive or indirectly identifying detail will be detected, and it does not make an AI answer true. Human review remains part of the workflow.
A legal file, medical report, board document or internal investigation often contains far more identifying information than an AI task requires. Uploading the complete original means the privacy decision happens after the file has already crossed the boundary.
Vera X-Ray moves that decision forward.
What does AI actually need to see to perform this task?
Structured identifiers, names, addresses, organisations, references and supported secrets are detected on the client.
X-Ray shows what it found. You can mark additional text, adjust permitted replacements and inspect the prepared context.
Reversible values become opaque references. Supported credentials and secrets are removed instead of being placed in a reversible mapping.
Choose a PDF, TXT or Markdown document in Vera X-Ray. Text-based PDFs are read locally. Scanned pages without a usable text layer can be processed with local OCR.
X-Ray runs deterministic rules and structural validators first. It can detect supported identifiers, contact details, names, addresses, organisations, references, financial identifiers and secrets.
An optional local recognition model can add person, organisation and city findings. The model cannot suppress deterministic findings or declare a document safe.
You see the proposed replacements before anything is released. Mark additional text where necessary, keep a value when disclosure is intentional, and pay additional attention to OCR-derived text.
Protected reversible values are replaced with opaque document-bound X-Ray tokens. Supported secrets are removed irreversibly.
Delivery remains blocked until you confirm that you reviewed the prepared text. Only the approved version can be added to Vera through the X-Ray workflow.
Vera processes the approved context through its verification workflow. When a returned answer contains authorised X-Ray references, the corresponding values can be reconstructed on-device and shown in the X-Ray view.
Restoration authenticates the mapping. It does not certify that Vera's statement is factually correct.
Dear Maria Jansen,The payment should be made toNL91 ABNA 0417 1643 00.
Dear ⟦XRAY:E1:a71c…⟧,The payment should be made to⟦XRAY:E2:19bd…⟧.
Maria JansenNL91 ABNA 0417 1643 00
The external AI works on the approved context and document-local references instead of the protected values themselves.
Traditional pseudonymisation can replace one real identity with another realistic-looking identity. X-Ray uses opaque random references instead.
Repeated values can share a document-local entity reference such as E1.
Each occurrence still gets its own 128-bit random component.
Entity numbering starts again for every document.
Removed passwords, PINs, keys and supported credentials receive no reusable entity reference and are not retained as reversible originals.
An entity reference indicates that X-Ray considers occurrences equivalent within that document. It is not a global identity and does not prove that two people with the same name are the same person.
Vera X-Ray does not send a confidential document to a generative model and ask whether the document is private.
The first detection layer is deterministic: checksums, known structures, document cues and language-specific rules handle information that does not require AI.
For harder free-text entities, the user can optionally install a locally running recognition model. The currently enabled model categories are person, organisation and city. Its findings are additive and remain subject to review.
Model files are downloaded separately and verified against pinned SHA-256 digests. Document text is not sent to the model host for inference.
Reversible values and mapping metadata are stored in an authenticated encrypted X-Ray envelope.
Protected values use opaque random references, not hashes of the original value.
Approved mappings that must survive the current panel session can be protected locally with a PIN.
Saved mappings lock after inactivity. There is no silent server recovery path for a forgotten local PIN.
The original document and private X-Ray mapping remain client-side during document preparation. External AI providers receive the context you approved. Restored values may subsequently be displayed in Vera when you explicitly request restoration.
Text is extracted locally before detection.
Pages without usable text can be rendered and processed with local OCR.
Plain text can be processed directly.
OCR can introduce recognition errors. OCR-derived pages therefore require additional human attention and do not become “safe” simply because no detector fired.
What is AI allowed to see?
What should I trust in the answer?
Privacy before processing. Verification before action.
Prepare correspondence, contracts and selected case material for AI-assisted analysis while reducing unnecessary disclosure of client identifiers.
Protect names, addresses, account details and document references while retaining the context needed for document work.
Prepare text for editorial or analytical support while reducing exposure of direct identifiers. X-Ray is not a clinical decision system and does not claim complete medical-context detection.
Remove supported credentials and prepare investigations, policies and internal documentation before AI processing.
Review exactly what confidential business context will enter an AI workflow before releasing it.
| Ordinary AI workflow | Vera X-Ray |
|---|---|
| Upload the original file | Prepare the document client-side first |
| Privacy decision happens after upload | Privacy decision happens before release |
| Little visibility into what left | Exact outbound text is reviewable |
| Original identifiers may enter the prompt | Protected values become document-bound tokens |
| Credentials can travel with the file | Supported secrets are removed irreversibly |
| No local mapping | Protected encrypted X-Ray mapping |
| AI answer contains placeholders | Authorised values can be restored after the response |
| “No finding” may look safe | User review remains mandatory |
We do not use “privacy-preserving” as a substitute for evidence. X-Ray is tested with deterministic regression suites, synthetic document corpora, model parity checks and end-to-end browser flows.
Those tests describe the cases that were tested. They do not prove that every future document will be detected correctly.
Checksums, identifiers, correspondence layouts and previously reproduced failure cases.
Dutch and English document fixtures with explicit gold spans.
The browser implementation is tested against the pinned reference model and export pipeline.
PDF, OCR, review, approval, delivery and restoration are exercised through the built extension.
X-Ray reduces unnecessary disclosure. It does not turn confidential work into risk-free AI use.
Vera X-Ray is IamVERA's client-local document privacy layer. It detects sensitive information before AI processing, lets the user review what should be protected and replaces selected values with opaque document-bound tokens before the approved context enters Vera.
Not in the strict sense. Reversible replacement is pseudonymisation because authorised values can later be restored from a protected local mapping. Some supported secrets are removed irreversibly. Unique combinations of remaining facts may still identify a person.
The X-Ray document-preparation flow runs locally using deterministic rules, local PDF/OCR processing and, when enabled, a local recognition model. The later Vera verification step is separate and operates on the context you approved.
The approved context used in your Vera session may be sent to the AI providers selected for that workflow. Values protected by X-Ray are represented by X-Ray tokens unless you deliberately chose to retain them.
Yes. Pages without a usable text layer can be processed with local OCR. OCR errors remain possible, which is why the resulting text still requires review.
No document text is sent to the X-Ray model host for inference. When the optional model is installed, pinned model files are downloaded and inference runs on the client.
Known authorised tokens can be restored while the corresponding local mapping remains available and unlocked. Restoration verifies the mapping, not the factual correctness of the generated answer.
Vera X-Ray is currently in development and is not yet offered as a general public download. Contact us to discuss a demonstration or early deployment workflow.
See how client-local document preparation can fit into your Vera workflow — before confidential context reaches external AI.
X-Ray controls what AI sees. Vera verifies what AI says.