Privacy Policy
Last updated: August 19, 2026
1. Introduction
PDFixel is built on a simple principle: your documents are none of our business. Every tool on this site runs entirely inside your own browser, so the files you work on are never sent to us. This policy explains what that means in practice, what limited data we do collect to run the service, and what rights you have over it.
2. Your files never leave your device
This is the most important section of this policy. When you use any PDFixel tool, the file you select is read directly by your browser and processed locally using WebAssembly and JavaScript running on your own machine.
- We do not upload your files to any server
- We do not store, copy, back up, or archive your files
- We do not read, inspect, index, or analyse the contents of your files
- We do not use your files to train models of any kind
- We have no technical ability to access a file you process here
When you close the tab, the file and every intermediate result are gone. You can verify this yourself: open your browser's developer tools, switch to the Network tab, and run any tool. You will see that your document is never transmitted.
3. Data we do collect
Running the service still requires a small amount of data. This is the complete list:
- Account data — if you choose to create an account, your name and email address. Accounts are optional; every tool works without one.
- Payment and billing data — if you subscribe to a paid Pro plan, transactions are processed securely by our Merchant of Record, Dodo Payments. We never see or store your full credit card number, CVV, or bank credentials; we only receive transaction confirmation and subscription status.
- Device identifier — a hashed browser fingerprint used to count daily free usage and to prevent abuse. It is not linked to your identity and is not used for advertising or cross-site tracking.
- Usage counts — how many operations you have run today, so we can apply the free daily allowance. We record the number of operations, never which file you used or what was in it.
- IP address — used transiently to rate limit sign-ups and one-time passcode requests, preventing automated abuse.
- Technical diagnostics — if something crashes, we receive an error report containing browser type, version and a stack trace so we can fix it.
4. How we use this data
- To authenticate you and keep your account secure
- To apply the free daily usage allowance and, if you subscribe, your plan
- To process subscription billing and verify Pro status via Dodo Payments
- To detect and block automated abuse of the service
- To diagnose and fix errors
- To respond to you when you contact support
We do not sell your data, share it with data brokers, or use it for behavioural advertising.
5. Third-party services
We keep external dependencies to a minimum. The services we do rely on are:
- Dodo Payments — our merchant of record and payment processing partner. When you subscribe to Pro, Dodo Payments securely handles checkout, payment methods, local taxation, and billing. Payment data is submitted directly to Dodo Payments and is governed by their privacy policy.
- Appwrite — our authentication and database layer, which stores account details and usage counts.
- Sentry — error and performance monitoring, which receives crash diagnostics.
- Content delivery networks — some processing engines, such as the video and OCR engines, are downloaded to your browser from public CDNs the first time you use those tools. These providers see your IP address as part of serving the download, as with any web request.
None of these services receive your documents, because your documents never leave your browser.
6. Cookies and local storage
PDFixel does not use advertising cookies, marketing tracking pixels, or cross-site tracking scripts.
Any data stored in your browser (via cookies, localStorage, or sessionStorage) is strictly necessary for core functionality:
- Authentication & Session — keeps your account securely signed in across page reloads.
- User Preferences — remembers your selected light or dark mode theme.
- In-Browser Tool State — preserves your saved signature templates and unsaved PDF editor drafts locally so you don't lose work if you refresh.
- Temporary Handoff — short-lived session storage when transferring files from the home page directly into a workbench tool (cleared when the browser tab closes).
This data stays entirely on your device and is never transmitted to advertising networks or external data brokers. Clearing your browser data removes all stored preferences.
7. Data retention
Because we never receive your documents, there is nothing to retain. Account data is kept for as long as your account exists and is deleted when you delete your account. Daily usage counters are retained only as operational records of your allowance. Error diagnostics are retained according to our monitoring provider's retention window.
8. Data security
The strongest security property of PDFixel is architectural: a document that is never transmitted cannot be intercepted, leaked in a server breach, or exposed by a misconfigured bucket. For the limited account data we do hold, the site is served over HTTPS only, passwords are hashed by our authentication provider and never stored in plain text, and access to the database is restricted to our server processes.
9. Your rights
You have the following rights over the personal data we hold:
- Request access to your personal data
- Request correction of inaccurate data
- Request deletion of your account and associated data
- Object to or request restriction of processing
- Request a copy of your data in a portable format
- Withdraw consent at any time
To exercise any of these rights, contact us using the details below.
10. Changes to this policy
If we change this policy we will update the date at the top of this page. If a change materially affects how we handle your data, we will notify account holders directly.
11. Contact us
If you have any questions about this privacy policy or our privacy practices, please contact us at:
support@pdfixel.app