This page goes through how to redact screenshots and screen recordings that you create as a part of payment testing.
What PII Is
Personally identifiable information (PII) includes any information that can identify an individual.
What Redaction Means
Redaction is a process that deliberately obscures or removes sensitive information by applying blurs, black boxes, or pixelation so that PII is not readable while the surrounding context is still visible.
What to Redact
Any personal information should be redacted. See a list of PII that needs to be redacted.
In screenshots or screen recordings created during payment testing, the most common types of PII to be redacted are:
Legal name
Home address (or delivery address)
Email addresses
Phone numbers
National ID
Account numbers
Username, passwords, and PIN
Redact Screenshots
To redact screenshots, apply a solid black box or pixelate the area containing personal information.
Tools to Redact Screenshots
Preview (built-in on macOS)
Skitch (free)
Greenshot (free)
Lightshot (free)
This is not an exhaustive list of apps. There are other apps available to redact screenshots. See other examples.
Redact Screen Recordings
To redact screen recordings, use a blur or black box overlay and keyframe it so that it appears in related frames.
Tools to Redact Screen Recordings
iMovie (built-in on macOS)
Blur Video (iOS app)
Shotcut (free)
Kdenlive (free)
OpenShot (free)
CapCut (freemium)
Final Cut Pro (paid)
This is not an exhaustive list of apps. There are other apps available to redact videos. See other examples.
Example tutorial using CapCut.
Good vs Bad Redaction
Good Examples | Bad Examples |
List of Personal Identifiable Information
Basic Identifiers
Full legal name
Addresses (such as home address, work address)
Phone numbers
Email addresses
Date of birth
Place of birth
Login Credentials
Username
Password
PIN
Answers to security questions
Government-issued identifiers
National ID
Social security number
Passport number
Driver’s license number
Tax identification number
Financial Information
Some of this information, such as a bank account number, is required to keep for payment testing.
Bank account numbers (required for transfer confirmation)
Credit or debit card numbers (required when payment confirmation is needed)
E-wallet handle or username (required when related to transfer)
Financial account login credentials
Income and credit information
Other Information
Health information (including medical records, insurance, patient ID)
Biometric data
Online identifiers (including IP address, MAC address)
#TestlioBot
