You Redacted the Text — But Did You Redact the File?

Published on August 22, 2026 · 5 min read

Most people focus on names, phone numbers, and ID numbers when they redact documents. That's the obvious stuff. The real problem is the data you don't think about — the stuff that's not even in the main text.

1. File properties

You scrub the names and company details from the document body, feel good about it, and hit send. But right-click the file → Properties → Details, and the original author, company name, last saved by info might all still be there. The recipient doesn't even need to open the file to see who created it.

A lawyer redacted a contract, changed every name in the text, but the recipient pulled the original author and company name straight from the file properties. It was internal firm data that was never meant to be shared — but file properties don't care about internal vs external. They just keep whatever's there.

Before you export, use "Check for Issues" or "Remove Personal Information" from your document tool. It takes a few seconds, and most people skip it.

2. Track changes and comments

Tracked changes and comments in Word or PDF might be the most dangerous part of the document. You delete the sensitive paragraphs from the body, but the comments still say "changed this, original value was 42,000" — right there for the recipient to read.

Someone once sent a report with budget numbers redacted, but left the comment saying "this was updated from 500,000". The recipient didn't even need to guess what the original number was — it was right there in the margin. Just clear tracked changes and comments before you export.

3. Hidden columns and rows in Excel

This one gets people all the time. HR exports a "sanitized" employee list with just name and job title visible, but the hidden columns still contain full social security numbers, salaries, and addresses. The recipient just unhides them.

There's another one: PivotTables cache raw data by default. Even if you export a summary table, the underlying details might still be in the file. The recipient expands the table and sees everything you tried to hide.

Unhide all columns and rows before you start. Delete what needs to be deleted, then re-hide if you want. Treating "hide" as "redact" is like leaving the key in the lock.

4. Document properties

Some document formats store fields like "Company" and "Department" that don't appear in the body text. They're not visible, but they're there. One company redacted every trace of their team structure from the text — but the file properties still said "Security Team" and "Project Lead" under the document fields.

Check if your redaction tool strips document properties. If not, manually clear custom fields from the file properties.

5. Email headers

If you're redacting an exported email file, the headers — sender, recipient, timestamp, routing info — often get ignored. People scrub the email body clean, but the headers still show the sender's address, recipients, even everyone CC'd. Those are separate from the body text. They need to be handled separately.

Do It Offline, Keep It Local

The safest way to redact is to do it on your own machine. No uploads, no third-party servers, no copies sitting somewhere you can't delete.

DocRedactNow runs locally. You add files, it processes them on your computer. Supports Word, Excel, PPT, TXT, CSV. Batch processing, pattern-based rules, audit logs.

You can try it for 14 days, full features. After that, you can choose a license that fits your needs. Your files stay on your machine either way.

Try DocRedactNow free for 14 days.

⬇️ Download Free Trial