Why it's safe: no uploads — and how to check for yourself
InYourHand never sends your files to a server. All processing happens in your browser. And you don't have to take our word for it — you can verify it yourself.
How it works
When you open a page, the program that does the work (JavaScript) loads into your browser. When you choose a file, that program reads it and rebuilds the PDF or image right on your device. The result is created on your device too, and saved straight from there.
Every page includes a policy that blocks outgoing connections (Content-Security-Policy connect-src 'none'). With it in place, even if a script tried to send data, your browser itself would stop it.
We don't load any analytics or ad scripts.
Check the network log yourself (Chrome & Edge)
- Open any tool page and press F12 to open Developer Tools (on Mac: Command + Option + I).
- Select the "Network" tab at the top.
- Click the clear button (a circle with a slash) to empty the list.
- Choose a file, process it, and save the result.
- Look at the list. You'll see zero requests uploading your file (no Fetch/XHR with a large payload). The only entries are blob: files created on your own device.
Once a page has loaded, the tools even work offline (try airplane mode). That's another easy way to confirm nothing is being sent.
About the counter in the bottom-left
The "Data sent to server" counter watches every attempt the page makes to send data out (fetch, XMLHttpRequest, sendBeacon, WebSocket) and adds up the size. If it stays at 0 bytes, nothing was sent.
The fine print
Like any website, the page itself (HTML, scripts, images) is loaded from our server. Those are ordinary page requests — they never include the contents of your files.