Redact Screenshots Online Without Uploading Them

Hide passwords, API keys, names, addresses, and private messages in screenshots locally in your browser before you share a new PNG.
Aug 28, 2026

Last reviewed: August 28, 2026

Share a screenshot without sharing the secret in it

Screenshots often reveal more than the part you intend to show: an API key in a terminal, an email address in a sidebar, a home address in a receipt, or a private message behind a dialog. PrivaCanvas lets you draw masks over those areas locally in your browser and download a new PNG before you share it.

For secrets and exact identifiers, choose Blackout rather than blur or pixelation. Blackout replaces the selected output pixels with a solid color; blur and pixelation preserve a transformed version of the original pixels.

A safer screenshot-redaction checklist

  1. Open the local image redaction tool and choose the screenshot.
  2. Scan from the edges inward. Look at browser tabs, sidebars, notifications, profile menus, timestamps, file paths, and the desktop behind the window.
  3. Draw a mask over every secret. Add padding around text so a character is not left visible at the edge.
  4. Use Blackout for passwords, tokens, API keys, codes, account numbers, addresses, and private messages. Blur or pixelate only when partial visual context is acceptable.
  5. Download the PNG, reopen it at normal and zoomed size, and check the exact file you plan to attach or post.

The original screenshot remains on your device. The exported image is a new, flattened PNG, so masks are rendered into the file instead of remaining movable layers.

Details people commonly miss

Before sharing a product, support, or coding screenshot, check these areas:

  • browser profile photos, names, bookmarks, and open tab titles;
  • URLs, query strings, local file paths, project names, and workspace labels;
  • notification previews, unread messages, calendar entries, and email headers;
  • API keys, one-time codes, recovery codes, invoice numbers, and QR codes;
  • faces, addresses, license plates, maps, and documents in the background.

If a face is visible, you can use Detect faces as a starting point, then manually review every result. Face detection does not identify text or other private objects.

Blur, pixelate, or blackout?

  • Blackout: best for exact secrets and information that must not remain visually recoverable.
  • Pixelate: useful when you want an obvious mask while preserving rough layout or color context.
  • Blur: useful for lower-risk visual privacy, such as a face or background detail, after checking the result.

Read the full redaction method comparison before relying on any method for high-risk information.

Local processing and privacy

PrivaCanvas performs image decoding, editing, and PNG export in the browser. It does not send the screenshot, filename, selected coordinates, or image content to its usage analytics. The editor records only coarse anonymous product events, such as an image being selected or a PNG being downloaded, to measure whether the tool is useful.

That does not remove the need for care: your browser, hosting provider, and the place where you later share the screenshot each have their own policies. Check the exported file and share only what your audience needs to see.

Frequently asked questions

Can I redact text automatically?

No. The current editor can automatically suggest face masks, but you must draw masks over text, credentials, and other private details yourself.

Will the original screenshot be overwritten?

No. PrivaCanvas creates a new PNG download. Your original file remains where it was stored on your device.

Is a blurred API key safe to publish?

Treat an API key as a secret and use blackout with padding. Then rotate it if it may already have been exposed.

Redact a screenshot now