By George Curta · Last updated 2026-08-12
始め方
Nextcloudに Anonym Anonymizer と Anonym Files をインストールし、バックエンドのAPI URLを設定します。次に管理画面から統合専用スコープの新しいアクセストークンを発行して接続すれば、今日からすぐにPIIの墨消し作業を安全かつ確実に、そして手軽に始められます。
両方のアプリをインストール
これらのアプリはまだNextcloud App Storeに公開されていないため、インストールは手動で行います — 通常のNextcloudアプリ更新と同じファイル置き換えの仕組みです。
- 1.GitHub Releasesページから、Anonym AnonymizerとAnonym Filesのアプリアーカイブをダウンロードします。
- 2.それぞれのアーカイブをNextcloudインスタンスのapps/ディレクトリに展開し、そのアプリの既存ファイルを置き換えます。
- 3.Nextcloud管理者としてocc upgrade(またはocc app:enable anonym_anonymizer / anonym_files)を実行し、Nextcloudに新しいアプリを認識させます。
- 4.Nextcloud管理画面のアプリ一覧で両方のアプリを有効化します。
バックエンドAPI URLを設定
両方のアプリは、各アプリの個人設定で設定したURL経由でanonym.legalのAPIと通信します。ご利用の環境に合わせて正しいホストを指定してください:
https://anonymize.businessDEV: https://anonymize.business — この連携が開発専用である間のNextcloudアプリのデフォルト値です。https://anonym.legal本番: https://anonym.legal — あなたのアカウントでこの連携が正式に利用可能になったら、このホストに切り替えてください。
実行時に検証されるホスト許可リスト(UrlGuard)により、これ以外のホストはすべて拒否されます。設定するURLは必ずこの2つのいずれかと完全に一致させてください — リクエストが拒否された場合はトラブルシューティングをご覧ください。
統合スコープのトークンを貼り付け
anonym.legalのアカウント設定から統合スコープのAPIトークンを生成し、バックエンドAPI URLと合わせてアプリの個人設定に貼り付けます。両方のアプリがインストールされている場合、同じトークン設定が自動的に共有されます。
統合スコープのトークンはコンテンツの分析と匿名化を行えますが、あなたのアカウントから復号済みの鍵材料を取得することはできません — アカウント全体のAPIトークンよりも意図的に権限を制限しているため、Nextcloudサーバーが侵害されても、可逆暗号化の履歴を復号するために使われることはありません。
About this page
We update this page when our platform or the law changes.
Read our founder note for how we work.
Each change shows up in the timestamp at the top.
Related reading
We follow these rules
- GDPR (EU 2016/679).
- ISO/IEC 27001:2022, held by our hosting provider.
- NIS2 (EU 2022/2555).
- HIPAA safe harbor under 45 CFR § 164.514(b)(2).
Our promise
We do not sell your data.
We do not train models on your text.
We store your files in Germany.
You can delete your account at any time.
You own your work.
Where we run
Our company HQ is in Saarbrücken, Germany. Our servers run in Hetzner's Falkenstein datacenter.
Hetzner holds ISO 27001 certification.
All data stays in the EU.
Backups run every day.
Need help?
Email support@anonym.legal.
We reply within one business day.
How we test
Automated checks run on every release.
Each surface gets its own sweep script and report.
Human reviewers spot-check the output each week.
We test detection against sample documents before each release.
A failing unit or integration run stops the release.
What we never do
- We never sell your information to third parties.
- We never train models on what you upload.
- We never keep your work after you delete it.
- We never share keys with any outside firm.
- We never run ads inside the product.
Plans in plain words
We sell credits, not seats.
One credit covers one short job.
Long jobs use a few credits each.
Paid plans can buy top-up credits.
Credits reset at the end of each cycle.
Read the plans page for current rates.
Who built this
A small team of engineers and lawyers built this.
We ship from Europe and work in the open.
Our founder note spells out why we started.
Where to start
- Open the web app and try a sample file.
- Learn how credits get counted.
- See current plans and limits.
- Meet the team behind the product.
How the parts fit
A browser add-on cleans text inside Chrome.
A Word plug-in handles drafts in Office.
A small desktop tool works on whole folders.
An agent protocol link feeds large models safely.
All four share one core engine and one rule set.
Words from our team
We started this work after a lunch about cookies.
One friend kept getting odd ads on her phone.
We asked why a court file leaked through a draft.
We sketched the first build on a napkin that week.
By month three we had a tiny demo for a friend.
She used it on her first case the next day.
Common questions we hear
Can the tool read scanned PDFs? Yes, with OCR.
Does it work on long files? Yes, in small chunks.
Can I roll my own rule set? Yes, save it as a preset.
Does it run offline? The desktop build runs offline.
Do you keep my files? No, the cloud build wipes after each run.
Will it learn from my work? No, we never train on inputs.
A short tour of the workflow
Upload a file or paste a snippet of prose.
Pick the entities you want gone from the draft.
Choose a method: replace, mask, hash, encrypt, or redact.
Press run and watch the side panel show each hit.
Skim the result and tweak any rule that misfired.
Save the cleaned file or send it to a teammate.