Control #
C
3
.
3
Evaluate PII filtering systems
Test the accuracy and coverage of input redaction and output filtering systems. Include adversarial prompts, edge cases, and rare PII types to validate system robustness.
Evidence
Audit results of third-party evals for PII filtering
Recommended actions
We'll recommend specific practices and actions for complying with this control.