Skip to main content

Omna unified PII/secret detection engine (L1–L6) — compiled Rust kernel with in-process on-device AI. Binary-only.

Project description

omna-pii-mask

The compiled detection engine behind Omna's PII features. This is the same unified Rust kernel that ships in the Omna Mac app and browser extension, exposed to Python as a single self-contained wheel.

It is the backend for pip install "omna[pii]" — you normally don't install it directly; the omna package depends on it.

What it does

A six-layer (L1–L6) detection pipeline over text:

  • Regex + rule layers — emails, phone numbers, cards, URLs, and 220+ secret rules (AWS keys, GitHub tokens, JWTs, …) with entropy checks.
  • Checksum-validated IDs — Luhn, IBAN, Verhoeff, NHS, and 30+ international formats, so a string that merely looks like an ID isn't flagged unless it validates.
  • On-device AI (L3) — an optional ONNX model that catches contextual PII regex can't (e.g. a bare prose name). Runs in-process on the same ONNX Runtime the wheel already links; downloads once on first use.

API

import omna_pii_mask

omna_pii_mask.mask("Email john@acme.com", model=False)   # -> {"masked": "...", "tokens": {...}}
omna_pii_mask.detect("SSN 123-45-6789")                   # -> [{"entity": ..., "confidence": ...}, ...]
omna_pii_mask.restore(masked_text, tokens)                # reverse the reversible tokens
omna_pii_mask.download_model()                            # pre-fetch the L3 model
omna_pii_mask.version()                                   # engine fingerprint (version+gitsha)

Reversible PII is replaced with stable tokens ([PERSON_1], [EMAIL_1], …). Secrets/credentials are always redacted irreversibly ([REDACTED:<KIND>]) and never written to the reversible token map.

Distribution

Binary-only, proprietary. Wheels are built abi3 (one wheel per platform covers Python 3.9+). No source distribution is published — the Rust source is closed.

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distributions

No source distribution files available for this release.See tutorial on generating distribution archives.

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

omna_pii_mask-0.2.5-cp39-abi3-macosx_11_0_arm64.whl (9.0 MB view details)

Uploaded CPython 3.9+macOS 11.0+ ARM64

File details

Details for the file omna_pii_mask-0.2.5-cp39-abi3-macosx_11_0_arm64.whl.

File metadata

File hashes

Hashes for omna_pii_mask-0.2.5-cp39-abi3-macosx_11_0_arm64.whl
Algorithm Hash digest
SHA256 b86b016fdd2d55d0dac252c6a5c9cfd45ecf84889b4f91430badb06c64f4bd1b
MD5 3778479bd6067fcd76f306e5fe895de7
BLAKE2b-256 105b32f6a3b658221dad5ed40e698c21ae247d51f5cb48af95b8dfecb5a90ba6

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page