Overview
Protect sensitive data for development, testing, analytics and AI/ML ops without compromising on data quality and innovation with DataMasque. Automatically discover and mask sensitive data - including PII, PHI and PCI - to generate privacy compliant, realistic and irreversible synthetically identical data. No matter where your data lives - in databases, files, the cloud, on-prem or across environments - DataMasque ensures it is masked consistently. DataMasque supports masking of primary and unique keys and automatically maintains referential integrity of foreign keys.
Highlights
- Optimised for self-service automation - integrates seamlessly into existing IT management services.
- Drives consistency across tables, databases and database engines.
- Cryptographically secure SHA-512 salted hash to drive irreversibility.
Details
Introducing multi-product solutions
You can now purchase comprehensive solutions tailored to use cases and industries.
Features and programs
Financing for AWS Marketplace purchases
Pricing
Vendor refund policy
We do not currently support refunds, but you can cancel at any time.
Custom pricing options
How can we make this page better?
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
64-bit (x86) Amazon Machine Image (AMI)
Amazon Machine Image (AMI)
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
Version release notes
Ruleset Generation Configurations
Ruleset generation configurations map each discovered label to the mask used when generating a ruleset. Discovery configurations now cover only finding and classifying sensitive data, and existing ones are automatically migrated to companion generation configurations on upgrade.
Discovery Config Libraries
Discovery configurations can now share reusable blocks of labels, metadata rules, and In-Data Discovery rules through config libraries and imports, instead of duplicating the same definitions in every configuration.
Email Mask
A new email mask generates realistic email addresses deterministically, so the same address masks to the same value across tables. The ruleset generator now suggests it automatically for email columns.
Imitate Date Mask
A new imitate_date mask handles date and datetime columns that must stay unique. Every value maps to a different date within the column's own range, so primary key and unique columns can be masked without constraint violations.
List Comparisons for Conditional Masking
Conditional masking now supports in and not_in comparison types, matching a column value against a list instead of chaining multiple equals conditions.
Direct Import of Generated Rulesets
Generated rulesets can now be imported straight into DataMasque under a name prefix, without downloading a ZIP and uploading it again. DataMasque also sends a notification when ruleset generation finishes, including a download link.
Row Counts in Schema Discovery
Database schema discovery results and the discovery report now include row counts, with a row_count_method option to choose between estimated and exact counts. Row counts are captured only when In-Data Discovery is enabled.
File Size and Row Counts in File Discovery
File discovery results and the discovery report now include file size and row count for each discovered file.
Length-Preserving from_file Mask
The from_file mask gains a preserve_length option that prefers replacement values with the same character count as the original, avoiding overlapping or overflowing text in masked documents.
Amazon Aurora Resource Tagging
AWS resource tagging now covers Amazon Aurora. Aurora clusters are tagged after masking so the tags propagate to their snapshots, which requires additional IAM permissions on your tagging policy.
Breaking Change: Consolidated Ruleset Validation Errors
The validation_error, validation_error_type, and errors fields have been removed from the Ruleset and Ruleset Library API objects, replaced by a single structured validation_errors list. Scripts that read the old fields must be updated.
Broader Safe Data Preview Profiling
Safe Data Preview now profiles a JSON path or nested Parquet column from every data type found there, rather than just one.
Safe Data Preview Report Formatting
String Common Lengths values in the discovery report are now quoted, so Excel reads them as text instead of interpreting them as a time value.
More Reliable Fresh Installations
Container startup is now ordered so that shared storage is set up once, making fresh installations more reliable.
Ruleset Exports Include Library Seed Files
Ruleset exports now include seed files that are referenced only by an imported ruleset library.
Additional details
Usage instructions
Please follow the steps below to complete setting up your DataMasque instance:
-
Access the application via a web browser at https://<instance-ip-or-hostname>. The application may take a few minutes to start. Please refresh the page if you encounter the "Unexpected Error" message.
-
Complete the first-time installation page by providing the following information:
-
Email address of the DataMasque admin user. This email address is stored on the DataMasque EC2 instance and is used for the purposes of providing 'Forgotten Password' account recovery and critical system notifications. DataMasque will not have access to this information.
-
Password for the admin user.
-
Hostnames or IP addresses to access the DataMasque instance.
-
The SMTP settings specific to your organisation.
-
The instance ID of your EC2 instance.
- You will be re-directed to the DataMasque login screen. Please proceed to login with the admin password you have just configured.
Note:
- This product allows masking up to a total of 500GB across unique data sources.
- When you use our software we may receive and store usage data and information relating to the performance and use of the Software. We will not disclose any system information which identifies the user or the user environment to third parties.
- To upgrade your DataMasque version, contact the DataMasque team via https://datamasque.com/contact/?source=support_ticket or support@datamasque.com to request your access to the DataMasque Customer Portal and download the new DataMasque software version.
Support
Vendor support
DataMasque provides full product and installation support within 72 hours of making an enquiry. Contact the support team at support@datamasque.com for any enquiries you may have.
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.