irmion
HelpLog in Find a tool

Security & Privacy · THE NO-PANIC PLAN

Prepare a screenshot for public sharing without leaking details

A screenshot can expose private information in its pixels and, depending on the file and capture workflow, in embedded metadata. Cropping or covering content does not remove metadata, and stripping metadata does not hide what the image shows. This workflow checks both surfaces, then verifies the actual file that will be shared.

MISSION Prepare an approved screenshot for public sharing by reviewing visible content, removing common image metadata, and verifying the release copy.

Remove image metadata

THE REAL-WORLD BIT

What happens outside this browser tab?

Confirm authorization and use approved or test data; capture only the necessary screen area; permanently redact visible sensitive details with an approved editor; remove common EXIF and container metadata from a separate copy; inspect the saved image and provide an accessible text alternative; then publish only the reviewer-approved file.

YOUR CHECKLIST, WITH FEWER DRAMATIC SIGHES

One step at a time.

Follow the order below. If a step names a Nirmion tool, its link is right there with it.

  1. 01

    Confirm you may capture and share the screen

    Identify the screenshot’s purpose, audience, release channel, account or application owner, and approver. Use a test account or approved demonstration data when possible. Before capturing, close unrelated windows, notifications, password managers, email previews, account menus, customer records, browser tabs, and chat panes that do not need to appear. Check the visible area for names, emails, account IDs, addresses, internal URLs, access tokens, private messages, unpublished information, and other details your organization does not want public. If the source includes another person’s information or a restricted system, get the required authorization and use the approved release process; do not assume that being able to view a screen gives permission to publish it. Keep the capture inside approved storage until the reviewer accepts the final version.

  2. 02

    Capture only the approved area and keep a controlled master

    Use the capture mode that includes only the window or rectangular area needed to explain the point; avoid a full-screen capture when a smaller view works. On Windows, Microsoft documents using Snipping Tool to capture a selected region and then edit, save, and share a snip. Its quick-redact feature can help locate email addresses or phone numbers, but it is not a complete review for every kind of secret or contextual clue. Save the initial capture as a restricted master with a neutral filename and date. Work from a copy for edits, and do not place sensitive values in filenames, captions, or alt text. If the screen itself contains live personal data, close it and recreate the example with approved test data rather than relying on a blur or overlay to conceal it.

  3. 03

    Remove visible sensitive details with a true redaction

    Review the screenshot at normal size and enlarged, including corners, browser chrome, status bars, notifications, and small text. Prefer recapturing with a safer test screen or cropping away information that is not needed. If visible content must be removed from an existing image, use an approved image editor that replaces the pixels or permanently flattens the approved redaction into a new copy; do not use a movable black shape, blur, highlight, or sticker that can be removed or reversed. Reopen the saved copy and check that the information is no longer readable at higher zoom and that the remaining image still gives the intended context. Keep the original master restricted, and record only the fact that an authorized redaction was applied rather than copying the sensitive detail into a public review note.

  4. 04

    Remove common image metadata from a separate copy

    Use Image Metadata Remover on the reviewed image copy when standard EXIF or container metadata should not be shared. This tool locally re-encodes a still image to omit common metadata and produces a separate output; it does not change visible pixels, confirm that the screenshot is safe, remove every possible nonstandard metadata block, or approve publication. Adobe documents that image metadata can include information such as author, resolution, color space, keywords, and capture details; Apple documents how location metadata can be reviewed and removed from supported photos and videos. Check the output’s visible dimensions and appearance after re-encoding. Do not assume that a screenshot contains GPS data, or that the absence of GPS means the visible image has no privacy risk.

  5. 05

    Inspect the exact output file for both visible and embedded information

    Open the newly saved output from its final folder, not just the editor preview. Confirm the filename, format, resolution, crop, and color; inspect the full image again for visible account details and clues in the surrounding interface. Review file properties or an approved metadata inspector for common author, location, timestamp, and software fields, recognizing that different file types and applications expose different properties. Compare the visible output with the authorized purpose and confirm that any redactions remain permanent in the exported copy. If a property remains or the result differs from the approved image, do not share it; repeat the appropriate edit or use the organization’s approved handling method. Keep the test data and reviewer confirmation attached to the internal release record, not to the public image.

  6. 06

    Provide an accessible description beside the screenshot

    When publishing the screenshot on a webpage or in documentation, decide what the image contributes in that context and provide an appropriate text alternative. If the image contains text that is not present elsewhere, make that text available in the alternative or nearby content; if it is a complex interface example, explain the relevant screen state in surrounding text. W3C’s image decision tree explains that alternative text depends on whether the image is informative, functional, decorative, or contains text. Do not put private information into the text alternative after removing it from the image. Ask an accessibility reviewer to confirm that the screenshot is understandable without relying only on pixels or color, particularly when it demonstrates a process or result.

  7. 07

    Approve and share only the verified release copy

    Have the designated owner confirm that the final output shows only authorized information, the visible redaction and metadata actions were applied, and the image still communicates its purpose. Confirm that the destination, caption, alt text, filename, and surrounding page do not reintroduce information removed from the pixels. Publish the exact checked output, then record its filename or version, approver, date, and any exception in the controlled internal record. Retain the original master and working copy according to the organization’s policy; delete temporary duplicates when no longer needed. If an unintended screenshot is shared, notify the release owner and follow the organization’s incident or correction process rather than assuming that deleting one link removes all copies.

THE HELPER CREW

Tools for the fiddly bits.

These are the currently published Nirmion tools matched to this guide. Open a tool page for its accepted inputs and limits.

RECEIPTS, PLEASE

Sources & review notes

Each source is linked to the steps it supports. Open it to check its scope and current guidance.

Source checked 2026-10-10