Video Redaction: What It Is and Why It Is Required

Video redaction is the process of permanently blurring, masking, or removing identifiable people, faces, or license plates from footage before it is shared, stored long-term, or released publicly. It is distinct from a live privacy mask, which hides part of a camera’s view in real time. Redaction happens after the fact, on a specific clip, usually because that clip is about to leave the controlled environment where it was recorded, whether that means a public-records request, a legal disclosure, or a vendor demo.

Key takeaways

  • GDPR Article 4 defines a recognizable face in video as personal data, which is why footage leaving its original purpose generally needs redaction first.
  • Public-sector surveillance deployments can trigger a Data Protection Impact Assessment under GDPR Article 35 before the system is even switched on.
  • In the U.S., footage released under a Freedom of Information Act (FOIA) request is one of the most common triggers for redaction at a government or public-facility site.
  • Manual, frame-by-frame redaction does not scale past a handful of short clips; automated tracking is the only practical approach beyond that.
  • Selective redaction can mask one identified subject while leaving every other person in the same clip visible, which manual blurring struggles to do consistently across hundreds of frames.

Why Redaction Is a Legal Requirement in Many Cases

Under the EU’s General Data Protection Regulation, Article 4 defines personal data as any information relating to an identifiable natural person, including identification “by reference to… one or more factors specific to the physical, physiological… identity of that natural person.” A video frame that shows a recognizable face falls squarely inside that definition, which is why footage containing identifiable people is treated as personal data under GDPR and comparable regimes, and why sharing it outside its original purpose without redaction can create direct compliance exposure.

Beyond GDPR: FOIA, CJIS, and State Biometric Law

The legal drivers differ by jurisdiction and sector but point toward the same practical requirement. In the United States, a Freedom of Information Act (FOIA) request for surveillance footage from a public agency commonly requires redacting bystanders before release. Law enforcement footage shared outside an agency often has to meet Criminal Justice Information Services (CJIS) security and handling requirements. Facial-recognition-based redaction tools that process biometric identifiers can also fall under state-level biometric privacy statutes such as Illinois’ BIPA, which govern the collection and handling of that data independently of what happens to the final released clip.

What Gets Redacted in Practice

Typical Targets

  • Faces of bystanders who are not the subject of an investigation
  • License plates not relevant to the specific incident
  • Screens, documents, or badges visible in the background
  • Minors, in almost every jurisdiction and policy

What Does Not Typically Get Redacted

The subject of the actual incident or investigation is usually left visible, since the entire point of most disclosures is to show what that specific person did. Redaction targets everyone and everything around the relevant subject, not the subject itself, which is what makes selective, tracked redaction more useful than a blanket full-frame blur for most real disclosure requests. A full-frame blur is faster to apply but often defeats the purpose of the disclosure entirely, since a requester who cannot see the incident itself has effectively received nothing useful, even though the request was technically fulfilled.

Manual Versus Automated Redaction

Where Manual Redaction Still Works

Manual, frame-by-frame redaction is accurate but does not scale past a handful of short clips. A reviewer working frame by frame on standard 30 fps footage has to make a redaction decision roughly thirty times per second of video, which is manageable for a single short clip and effectively impossible for an hour of multi-camera footage from an incident. A single-hour incident captured across four camera angles at 30 fps represents roughly 432,000 individual frames combined, which is the scale problem that pushes most facilities toward an automated approach once they move past occasional, single-clip requests.

Why Automated Tracking Changes the Math

Automated redaction tracks a face or plate across the frame and applies a blur continuously, which is the only practical approach once a facility is handling more than an occasional records request. Because the system tracks the same detected face or plate across every subsequent frame rather than requiring a fresh detection each time, it keeps up with standard 1080p to 4K footage at 15–30 fps without a reviewer manually selecting a region on every single frame.

Redaction Approach Coverage Best Suited For
Manual, frame-by-frame Reviewer-selected regions only A handful of short clips, single-incident requests
Full-frame blur or mask Entire visible frame Clips with no subject that needs to remain visible
Automated face tracking Detected faces, tracked across frames Bystander privacy in multi-person footage
Automated plate tracking Detected plates, tracked across frames Vehicle footage released for an unrelated incident
Selective/targeted redaction One identified subject, all others untouched Disclosure where all but one identity must remain visible

Retention, Storage, and the Redaction Timeline

Redaction usually happens on a copy of the footage made specifically for release, not on the original recording, since most sites need to preserve an unredacted master for their own investigation or audit trail. Many operators purge non-flagged footage on a set retention window, commonly in the 30 to 90 day range, a figure set by the operator’s own policy in the absence of a single fixed federal rule, and redaction is typically applied only to the subset of that footage a specific request or disclosure actually requires, not to the full archive by default.

Preserving Chain of Custody Through the Redaction Step

A redacted clip released for disclosure is not the same evidentiary object as the original recording, which is why most sites keep the unredacted master under the same access controls and audit logging as the rest of their video archive, and treat the redacted export as a separate, purpose-built copy. Logging who requested a redaction, what was masked, and when the export was generated matters as much for a facility’s own audit trail as the redaction itself, particularly for footage that might later be needed in its original, unredacted form for an internal investigation or legal proceeding.

Frequently Asked Questions

Is video redaction legally required, or just a best practice?

It depends on jurisdiction and use case, but in many situations it is a legal requirement rather than a discretionary best practice. GDPR treats identifiable footage as personal data subject to its rules, and U.S. public-records law such as FOIA commonly requires redacting bystanders before releasing footage held by a government agency.

What is the difference between a privacy mask and redaction?

A privacy mask hides part of a camera’s live view in real time, permanently or on a schedule, and nothing behind the mask is ever recorded in the first place. Redaction is applied after recording, to a specific clip that already exists, typically because that clip is about to be shared or disclosed outside its original purpose.

Can redaction target one person while leaving everyone else visible?

Yes. Selective or targeted redaction tracks one identified subject, whether by face or by another identifying feature, and masks only that subject across every frame, leaving other people in the same footage untouched. This is a materially different capability than a full-frame blur, which removes visibility of everyone.

How does automated redaction handle a person moving through multiple camera angles?

Automated systems that use tracking rather than single-frame detection follow a subject continuously within a single camera’s field of view. Carrying that same tracked identity across multiple, separate camera feeds is a more advanced capability that depends on the specific system and is not universal across all redaction tools.

Does redacted footage still count as personal data under GDPR?

Once a person is no longer identifiable in the footage, meaning the redaction is applied consistently and cannot be reversed, that footage generally falls outside the GDPR Article 4 definition of personal data for that individual. Redaction that can be undone, or that leaves a person identifiable through other means in the frame, does not achieve this.

Argu’s facial recognition and natural language video search agents locate the specific person or vehicle in a clip first, which is the step that makes targeted redaction, rather than blurring an entire frame, possible at scale. This matters most for homeland security and federal facility deployments, where a single incident review or disclosure request can touch hours of multi-camera footage. Contact Argu to discuss a records-request or disclosure workflow.

Last updated: September 2026

Sharing the post:

Monitor & Secure your perimeter today!

Schedule a demo to see the AI agent run on your own footage.

Get a Custom Demo

See how the agent performs on your specific environment.

Join world-class security teams

By submitting this form, you agree to our Privacy Policy. Your data is encrypted.

Seamless Integration With

Related Posts

Critical Infrastructure Security: Definition and Scope

Critical infrastructure security protects power, water, ports, and communications systems designated vital by CISA....

Video Redaction: What It Is and Why It Is Required

Video redaction blurs or masks identifiable people and plates before footage is shared, often a...

False Alarm Rate: Why It Matters More Than Detection

False alarm rate is the share of security alerts that are not real events. See...

Occupancy Analytics: What It Measures and Why

Occupancy analytics counts people in a space or zone in real time using existing cameras,...

What Is ANPR? Automatic Number Plate Recognition

ANPR reads vehicle license plates from live video in real time. See how it works,...

Best AI Video Analytics Companies in 2026

Ten AI video analytics and video surveillance companies compared on sourced facts: founding, HQ, core...