basalt / audit/src / createPiiMinimizingRedactor
Function: createPiiMinimizingRedactor()
> createPiiMinimizingRedactor(options?): AuditRedactor
Defined in: audit/src/index.ts:519
Payload scrubber that also pseudonymizes obvious PII (PII F3), keyed with HMAC-SHA256. Opt-in — pass it to auditPlugin({ redact: createPiiMinimizingRedactor({ key }) }). The key is validated up front (>= 128 bits); without one, pseudonyms use a random per-process key and a warning is logged.
TODO(PII F3 follow-up): the default capture set still persists whatever the emitting code puts in the payload. A fuller minimization pass would let callers declare per-event field policies; kept out of the default here to avoid changing existing capture/redaction behavior.
Parameters
options?
PiiRedactionOptions = {}