A shared folder often travels further than the people named inside it expect. Turn this on and Stood Flows scrambles every user name and email address before it goes to the bucket, so the analysis can be shared without the people in it.
It is optional, and off until you set a passphrase.
In the folder's Settings, with sharing set to S3, find PII encryption, type a passphrase and press Save. The next Publish all starts protecting the folder.
Everyone who should see real names types the same passphrase into their own Settings. It belongs to the folder, not to you — so pass it on the way you would a door code, and not through the bucket itself.
The app works normally. Every chart, count, table and total is exactly the same. Wherever a person's name or email would appear, their Salesforce user id appears instead.
Nobody is locked out by this. They simply cannot tell who is who.
Once saved it is kept in your computer's keychain and never displayed, not even to you. You can replace it or forget it, but not read it back. The line above the box tells you the thing that actually matters — whether the passphrase you have matches the folder.
Keep your own copy somewhere safe. If everyone loses it, the names already in the bucket cannot be recovered. The analysis still opens and still works; it shows user ids from then on.
Turn encryption off for this folder ends it for everyone. Names return to the bucket on the next Publish all. Until that publish happens, what is already up there still reads as user ids.
This arrived in a recent version. Someone on an older one cannot read the protected names — and worse, publishing from an older version quietly removes the protection for everybody. Make sure the whole team has updated before you turn it on.