Privacy Policy
Effective Date: October 2026 • DocTool (doctool.online) Global Policy
1. Zero-Knowledge Client-Side Architecture
DocTool (doctool.online) was engineered from the ground up on a fundamental architectural principle: your sensitive documents, photos, marksheets, and PDF files belong exclusively to you.
Unlike traditional online file converters that require you to transmit documents across the public internet to remote servers, DocTool executes all processing engines—including PDF compression, text editing, format conversion, and image optimization—directly inside your local browser environment using WebAssembly (WASM), Web Workers, and HTML5 Canvas APIs.
2. Absence of Document Uploads & Zero Server Retention
When using our 30+ tools:
- Your files are never uploaded to any central server or cloud storage bucket.
- We do not record, analyze, replicate, or index file contents, names, or metadata.
- All binary buffers reside strictly in your device's temporary memory (RAM). When you reload, navigate away, or close your browser tab, all buffer memory is immediately and permanently released by the browser engine.
3. Account & Authentication Data
You are never required to create an account to use DocTool's core tools. However, if you optionally register for a DocTool account:
- Collected Information: We store your registered email address and authentication tokens via our secure authentication provider (Supabase). Passwords are never stored in plain text and are protected with industry-standard cryptographic salted hashes.
- Usage Separation: We never link, associate, or log user accounts with the actual contents of documents processed in the browser.
- Zero Commercial Monetization: We do not sell, rent, license, or monetize your contact information or personal data to data brokers or advertising third parties under any circumstances.
4. Local Storage and Client Preferences
DocTool utilizes standard browser localStorage solely to save non-sensitive UI settings:
- Your selected color mode preference (Light or Dark mode).
- Your list of recently opened tools to display quick navigation shortcuts on your home screen.
You can purge this local data at any time through your browser's "Clear Site Data" settings or via the Clear History button in the tools directory.
5. Analytics & Tracking Cookies
We do not deploy invasive user surveillance cookies, cross-domain behavioral trackers, or third-party advertising pixels. Our infrastructure maintains zero visibility into the nature of your converted documents or private workflows.
6. Global Regulatory Compliance (GDPR & CCPA/CPRA)
Because DocTool does not collect, transmit, or store the documents you manipulate:
- GDPR (EU/UK): We fully uphold the principles of data minimization and privacy by design (Article 25). Registered users have the right to request access to or erasure of their account credentials at any time.
- CCPA & CPRA (California): We do not "sell" or "share" personal data as defined by the California Consumer Privacy Act.
7. Infrastructure & Security Measures
All static web assets and client scripts are delivered over TLS 1.3 encrypted HTTPS with Strict Transport Security (HSTS) headers. Execution is strictly confined to the browser's sandbox security boundary, safeguarding your operating system from unauthorized interaction.
8. Contact & Privacy Inquiries
For questions regarding this policy, data rights requests, or technical privacy verifications, please contact:
DocTool Privacy Engineering
Email: privacy@doctool.online / support@doctool.online
Website: https://doctool.online