Security

At Blackpdf, we prioritize the security of your files and data. We implement multiple technical and organizational measures to protect your files during in-browser processing, temporary storage, and server-side operations.

1. File Security

  • In-Browser Processing: Most file conversions happen entirely within your browser, so your files never leave your device.
  • Temporary Local Storage: When you choose to reuse a file in another tool (for example, merging then compressing), it may be temporarily stored in your browser. This storage is optional, limited to your device, and is automatically cleared after processing or when you remove it manually.
  • Secure Server Processing: For resource-intensive tasks like compression, files are securely uploaded using 256-bit TLS encryption and automatically deleted after processing.

2. Encryption & Data Protection

  • Encryption in Transit: Files sent to our servers are encrypted using 256-bit TLS encryption.
  • Automatic Deletion: Files are permanently deleted after processing to leave no trace.
  • Input Sanitization: We validate and sanitize files to prevent malicious content from affecting our servers or tools.

3. Access & Isolation

  • Isolated Storage: Files processed on our servers are stored in isolated directories inaccessible to other users.
  • Audit Logging: Security events and processing actions are logged to detect unauthorized access or attacks.

4. Additional Measures

  • CSRF Protection: Token-based validation prevents unauthorized requests.
  • Rate Limiting: Limits on requests per IP prevent abuse.
  • CORS: Only authorized domains can access our APIs.
  • Secure Cleanup: Files are deleted automatically even in case of a crash or unexpected error.

5. References

For details on our data practices, see our Privacy Policy.

For terms of using the Service, see our Terms of Service.