Security Your files are safe
How PDFMagik protects your files and data — Last updated:
Your files are never shared, never sold, and automatically deleted within 5 hours. Security is built into every part of PDFMagik.
Security at a Glance
HTTPS / TLS Encryption
All data transferred between your browser and our servers is encrypted.
Auto File Deletion
Uploaded files and outputs are automatically deleted within 5 hours.
No File Sharing
Your files are never shared with third parties or other users.
EU-based Servers
Our servers are hosted in the EU (Hostinger VPS) for GDPR compliance.
Disk Encryption
Provider-level disk encryption protects data at rest on our servers.
Rate Limiting
Rate limiting and abuse prevention protects the service from misuse.
File Security
- Files are uploaded over an encrypted HTTPS connection
- Each file is stored in an isolated temporary directory
- Files are processed and then automatically deleted within 5 hours
- No human reviews your uploaded files
- Files are never used for training AI or any other purpose
- Processed output files are also deleted on the same schedule
Infrastructure Security
- Servers run on a private EU VPS with restricted access
- Regular software and security updates applied
- Firewall and intrusion detection in place
- Nginx reverse proxy with security headers
- Flask applications run in isolated environments
- No unnecessary ports exposed to the public internet
Privacy by Design
- Analytics is disabled by default — only enabled with your consent
- IP addresses are anonymized in Google Analytics
- No advertising tracking or behavioral profiling
- Minimal data collection — we only collect what is necessary
- No user accounts required to use our tools
- Consent preferences stored locally in your browser only
Vulnerability Disclosure
If you discover a security vulnerability in PDFMagik, please report it responsibly. We appreciate security researchers who help keep our users safe.
- Email: pdfmagik@gmail.com
- Subject: Security Vulnerability Report
- We aim to respond within 48 hours
- Please do not publicly disclose vulnerabilities before we have a chance to fix them