Home › Security
Security
How FirePDF keeps your files on your device
FirePDF is built so that your documents never need to leave your device. This page explains exactly what that means, and what it does not.
Where each tool runs
Every tool below processes your file inside your web browser using JavaScript. None of them sends your file to a FirePDF server. FirePDF currently has no server-side or AI processing. If that ever changes for a particular tool, this table and the tool’s own page will say so clearly before you use it.
| Tool | Where your file is processed | File uploaded? |
|---|---|---|
| Merge PDF | In your browser | No |
| Split PDF | In your browser | No |
| Extract pages | In your browser | No |
| Remove pages | In your browser | No |
| Rotate PDF | In your browser | No |
| Unlock PDF | In your browser | No |
| Encrypt / Protect PDF | In your browser | No |
| Sign PDF | In your browser | No |
| Compress PDF | In your browser | No |
| PDF to JPG | In your browser | No |
| JPG to PDF | In your browser | No |
| Add page numbers | In your browser | No |
| Add watermark | In your browser | No |
| Remove text watermark | In your browser | No |
| Edit PDF | In your browser | No |
| Erase / Redact | In your browser | No |
| PDF to Word | In your browser | No |
| PDF to Excel | In your browser | No |
| Word to PDF | In your browser | No |
| Excel to PDF | In your browser | No |
What your browser still requests
Opening any web page involves some network requests. For FirePDF these are:
- The page itself, delivered through Cloudflare, which can see standard request data such as IP address and the pages requested.
- Open-source code libraries (pdf-lib, PDF.js, JSZip, jsPDF, ExcelJS and others) from cdnjs.cloudflare.com and cdn.jsdelivr.net. Only the library code is downloaded.
- Google Fonts for typefaces.
- Google Firebase, to fetch the site’s public settings such as contact details. Nothing about you or your files is sent.
- Google AdSense, which shows ads and may use cookies. See the Cookie Policy. Ads never receive your files.
How to verify it yourself
- Open a tool page and let it finish loading.
- Switch off your internet connection (or use airplane mode).
- Run the tool on a file. It still works, because the processing is local.
- For a closer look, open your browser’s developer tools, go to the Network tab, run a tool and see that no file is sent.
Sensible precautions
- Use a current browser and keep your device up to date.
- Do not use shared or public computers for sensitive documents. Files sit in the browser’s memory until you close the tab.
- Protect PDF passwords are standard PDF encryption. Choose a long phrase and keep it safe, because it cannot be recovered.
- The Erase / Redact tool covers content with a white box but may leave the text underneath in the file. Do not use it to hide information that must not be recoverable.
- Check converted or edited files before you rely on them.
Report a security problem
If you believe you have found a vulnerability, email firepdfedit@gmail.com with the details. Please do not include private documents.
Related: Privacy Policy, Cookie Policy, Terms of Use.
