Vaktor masks sensitive data in the browser before it reaches ChatGPT or Claude, and gives you the audit trail to prove it. Built for Nordic teams that handle things they can't afford to leak.
Draft the redemption memo for Erik Lindqvist, personnummer 811218-9876, on his Nordkap Fond holding.
Draft the redemption memo for [KLIENT_1], personnummer [PERSONNUMMER_1], on his [KLIENT_2] holding.
Your best people are faster with these tools, so the volume only goes one way. Three responses are available to you, and each one has a hole in a different place.
Cyberhaven's 2026 endpoint telemetry already puts 32.3% of workplace ChatGPT use on personal accounts. Outside SSO, outside retention, outside your logs.
People reach for whichever model is better at the task in front of them. The enterprise seat you paid for covers the traffic you can see.
39.7% of what employees move into these tools is sensitive. A policy does not sit between the clipboard and the send button.
A client's vendor questionnaire. An auditor working through DORA. Finansinspektionen. They ask what happened, on which day, to which data.
A policy document holds no record of a single prompt. Neither does an acceptable-use training module, and neither does the browser history on a laptop you do not administer.
GDPRDORANIS2EU AI Act
Figures from Cyberhaven Labs, 2026 AI Adoption & Risk Report, measured across corporate endpoint telemetry rather than self-reported survey.
Nothing to route traffic through, nothing for your team to remember, and no new place for sensitive text to sit.
Their own account, the workflow they already have. No proxy, no gateway, no second login.
chatgpt.com · claude.ai · gemini.google.comPersonnummer and organisationsnummer are confirmed by Luhn checksum, IBANs by mod-97, client names against your own list. Each match becomes a numbered placeholder, and repeat mentions reuse the same number so the model can still tell two people apart.
runs in the extension, on the laptop[KLIENT_1] sits in the same grammatical slot the real name did. Vaktor restores the real values in the browser as the answer renders.
Reads a separate ledger: which categories were masked, how many of each, on which date, by which user. Never the text of the prompt, which is not transmitted and therefore cannot be produced. Export it when an auditor asks how the firm uses AI.
Masking runs in this page, on your machine, using the same checksum code that ships in the extension. Open the network tab if you would like to watch nothing happen.
This demo recognises Swedish personnummer and organisationsnummer, IBANs, email addresses, and a three-name sample client list (Erik Lindqvist, Nordkap Fond, Åsa Sjöberg). In a deployment the client list is yours. Every identifier shown here is an official Swedish test number.
Vaktor is not in the prompt path. The extension rewrites text inside the page, the browser sends it to OpenAI or Anthropic the way it always did, and our endpoint receives a category, a count and a timestamp.
Your security team can settle the whole question in an afternoon with a proxy and a packet capture. No source access, no NDA first. We will help set it up if that is useful.
If a capture ever showed prompt text leaving for a Vaktor endpoint, the product would be broken and you would be holding the evidence.
Prompt text appears in none of these
If yours is not here, ask it on the call. We would rather answer it before you buy.
[KLIENT_1] occupies the same grammatical slot as the name it replaced, and the model works on the structure rather than the identity. Real values are restored in the browser, so the reader sees the original names.Thirty minutes. We run your own text through it and you see exactly what would have stayed on the laptop.
Or write first: [email protected]