Privacy Policy

Most converter sites ask you to upload your document and then explain how carefully they delete it afterwards. We took the other route: we never receive it, so there is nothing to delete and nothing to leak.

Your files

We do not receive them. Every tool on this site reads your file in your own browser and writes the result there too. You can check this while you use it: open your browser’s network tab and watch. No upload request appears.

This is not a policy choice we could quietly reverse. There is no server-side processing to switch on.

What we do store

If you open an account, we keep only what is needed to know that your plan is valid: your email address, the date you signed up, whether your plan is free or paid, when a paid period ends, which payment provider it came from, the provider’s subscription reference, and the account status.

We also count how many pages you have converted in the current month, so that the free allowance works. That is a number, not a record of what you converted. We do not know what was in the file, because we never saw it.

Signing in

Signing in goes through Google. We receive your email address and whether Google has verified it; we never receive or store a password, and we keep nothing else about the sign-in itself.

Payment data

We never see your card. Paddle is the seller of record and handles payment entirely; they tell us only that a subscription started, renewed, failed or was cancelled, along with the email address you used. Their own privacy notice covers what they hold.

The email list

There is a box on most pages offering to tell you when a new tool lands. If you use it, we store four things: the address you typed, the date, which page you were on, and a random token that is used to remove you again. Nothing else. No name, no IP address, no cookie, no browser fingerprint.

We have not sent a single message yet, and we say so plainly rather than implying an established newsletter. There is no confirmation email either, because we have no way to send one at the moment. When we do, confirming your address will be the first thing we ask for, and until then the list sits unused.

Every message we ever send will carry a one-click link that removes you. If you want to be removed before then, email us and it will be done by hand. The list is never sold, never shared, and never handed to an advertising network.

Cookies and tracking

There are no advertising trackers here, no Google Analytics, no advertising pixels and no session recording. If you are signed in, one cookie keeps you signed in. Two more exist only for the few seconds you are signing in through Google: one to prove the request came from us, one to remember which page to send you back to, and both are deleted the moment you land back here. That is every cookie we set.

Two requests leave this site while you are just using the tools. The first is a web font from Google Fonts. The second is a page-view counter added automatically by Cloudflare, who host this site: it sets no cookies, does not follow you to other sites, and tells us only how many people opened a page. We cannot see individual visitors in it, and it never sees the contents of your files, because your files are never sent anywhere. We also count page views ourselves, on our own server, because the host’s counter does not tell us enough. Ours records the page address and the site that linked you here, the domain only, never the full address, because a full address can carry your search terms. If you arrived through a link we placed somewhere ourselves, that link carries a short campaign label such as "linkedin", and we record the label instead of the referring domain, because some networks send no referrer at all. The label is a word we chose when we made the link, not anything about you. Your IP address is never stored: it is turned into a one-way signature using a secret that changes every day, and each day’s secret is deleted after two days, so past visits cannot be traced back even by us. That also means we cannot tell whether the same person came twice on different days. If your browser sends Do Not Track or Global Privacy Control, our counter ignores you completely.

A third only happens if you open the payment window. That window is Paddle’s, and it loads Paddle’s own scripts, including ProfitWell, which is their subscription analytics. We do not control what those do and we get nothing from them; they belong to the payment provider, on the payment provider’s window. We measured this rather than assuming it, and we would rather tell you than let you find it in a network tab.

We would rather the host’s counter were not there, and if we find a way to switch it off we will — our own counter already tells us what little we need. We are telling you it is there rather than claiming a purity we do not have.

Your rights

Write to [email protected] and we will tell you exactly what is stored against your address, correct it, or delete the account and everything attached to it. There is not much to send you. The list above is all of it.

Children

The service is not aimed at children and we do not knowingly hold data about anyone under 16.