Have you ever used a free online PDF converter, compressor or merger? Millions of people do, every day, because it's convenient — drag, drop, click, download. But most users never ask the obvious question: what actually happens to your file after you upload it?
The answer is worth knowing, especially if you've ever put a tax return, a medical record, a signed contract or an ID scan through one of these services.
The Journey of Your Uploaded PDF
When you upload a PDF to a typical online tool, here's what happens:
1. Your File Travels Across the Internet
The moment you click "upload," your document leaves your computer and crosses multiple network hops before reaching the service's server — which may sit in a country with very different privacy laws from your own.
Example scenario
You're in California working on a confidential business contract. You upload it to a free PDF compressor. That file may be processed on a server in another continent entirely, with backups replicated across several more — none of which you chose or can inspect.
2. It Sits on Someone Else's Computer
"The cloud" is just someone else's computer. Your document now exists on a server you don't control, managed by people you've never met, protected by measures you can't verify.
Many services promise they delete files after an hour or a day. Reasonable questions to ask:
- Can you verify the deletion actually happened?
- Does it cover backups and redundant storage?
- What about temporary processing files and CDN caches?
- What if there's a breach before the deletion window closes?
3. Processing — and Potential Analysis
While your PDF is being compressed, merged or converted, the service's software has complete access to its contents. That access can extend to:
- Text extraction: every word in the document can be read, indexed and retained
- Metadata collection: creation date, author name, editing history, and GPS coordinates embedded in images
- Content classification: automated systems can identify what kind of document you uploaded — invoice, contract, medical record
- Aggregate analytics: patterns across many users' documents
- Broad policy language: terms permitting use "to improve our services" can cover far more than users expect
4. The Terms of Service You Didn't Read
That wall of legal text often includes clauses along the lines of:
- "We may use uploaded content to improve our services"
- "We collect data for analytical purposes"
- "We may share information with third-party partners"
- "We use cookies and tracking technologies"
Read the training clause
Some document services reserve the right to use uploaded content for product improvement or machine learning. Whether a given service does this varies, and terms change — so check the current terms of any tool you're about to trust with a confidential file, rather than assuming either way.
The Hidden Business Model
Free tools have to fund themselves somehow. Common models include:
Data and Analytics
Usage data and, in some cases, document-derived data has commercial value — industry trends, behaviour patterns, geographic and demographic signals.
Third-Party Integrations
Many free tools embed analytics and advertising SDKs — each one an additional party with visibility into your session, and sometimes into filenames or page contents.
Email Capture
Tools that require an email address "to send you the processed file" are building a marketing list. That address may be used for their own campaigns or shared with partners, depending on the terms you accepted.
Real-World Privacy Incidents
This isn't hypothetical. Several PDF services have suffered serious data exposure. The three below are drawn from published security reporting, with sources linked so you can read the original coverage.
PDF Pro and Help PDF — exposed storage bucket (2024)
In July 2024, researchers at Cybernews reported that two online PDF makers, PDF Pro and Help PDF — similar in design and reportedly operated by the same UK-registered entity — had left an Amazon S3 storage bucket publicly accessible. The exposure covered 89,062 user-uploaded files (87,818 from PDF Pro, 1,244 from Help PDF), including passports, driving licences, certificates and contracts. Researchers reported that attempts to contact the operators went unanswered and that users were still uploading files while the bucket remained open. Source: Cybernews
Lumin PDF — exposed database (2019)
Lumin PDF, a cloud-based PDF editor from NitroLabs of New Zealand, had a MongoDB instance left accessible without a password in April 2019. The breach wasn't public until September that year, when records for around 24.3 million accounts (roughly 15.5 million unique email addresses) were posted to a hacking forum. Exposed fields included names, email addresses, locale, and either a hashed password or a Google auth token. The person who found it reported contacting the company repeatedly without response, and the database was later hit by ransomware. Source: Have I Been Pwned
Nitro PDF — 77 million records leaked (2020–2021)
Nitro Software disclosed what it described as a low-impact security incident in October 2020. In January 2021, a threat actor associated with the ShinyHunters group published a database of 77,159,696 records for free on a hacker forum. Reported fields included email addresses, full names, bcrypt password hashes, job titles, company names and IP addresses. The scale contrasted sharply with the initial characterisation of the incident. Source: BleepingComputer
Two different companies, similar names
Lumin PDF is a product of NitroLabs (New Zealand). Nitro PDF is a product of Nitro Software, a separate company. The two incidents above are unrelated despite the similarity in naming.
These are the well-documented cases. Smaller exposures often go unreported entirely. The common thread isn't that these companies were unusually careless — it's that holding user files at all creates a target that has to be defended indefinitely.
What About "Trusted" Services?
Even established companies carry structural risk:
- Breaches happen to large, well-resourced organisations regularly
- Staff may have access to uploaded files for support and troubleshooting
- Subcontractors and sub-processors may handle data on the service's behalf
- Lawful government requests can compel disclosure of stored data
- Acquisition or insolvency can transfer your data to an owner with different policies
Documents Worth Keeping Off Third-Party Servers
Some categories carry enough downside that server-based processing is rarely worth the convenience:
Financial documents
- Tax returns — national ID numbers, income, bank details
- Bank statements — account numbers and transaction history
- Investment records and loan applications
Medical records
- Insurance documents and policy numbers
- Test results and diagnoses
- Prescription records and clinical notes
Legal documents
- Signed contracts and NDAs
- Family law papers
- Privileged correspondence with a lawyer
Identity documents
- Passport and driving licence scans
- Birth certificates and national ID cards
Identity documents deserve particular caution — they were exactly what leaked in the 2024 S3 exposure above, and unlike a password, you can't rotate a passport scan.
Business confidential
- Strategic plans and unpublished research
- Employee records and salary data
- Client lists and pricing
The Alternative: Client-Side Processing
There's a different architecture: tools that process files entirely in your browser, without uploading them at all.
How it works
- You select a file from your computer
- Processing runs in your browser using JavaScript and WebAssembly
- The file is never transmitted — it's read into browser memory
- You download the result directly from that memory
- Closing the tab discards everything
The technology behind it
Modern browsers are capable enough to compress and merge PDFs, split documents, convert between PDF and image formats, and edit page content — all using your own device's processing power, with no server involvement.
How to verify the claim
Don't take it on trust — this is a claim you can test in about a minute:
- Open your browser's developer tools (F12, or Ctrl+Shift+I)
- Switch to the Network tab
- Process a file with the tool
- Watch the requests — no request should carry your file's contents
For a stronger test: load the page, disconnect from the internet, then process a file. A genuinely client-side tool still works. A server-based one cannot.
What InBrowserTools Does Differently
We built the platform on one principle: your files are yours, and they shouldn't need to leave your device.
How our tools handle your files
- No uploads — files are processed entirely in your browser
- No server-side copy — we never receive your documents, so we can't read, retain or lose them
- No accounts — no email collection, no sign-up wall
- No file storage — nothing is written to a server, even temporarily
- No analytics or tracking scripts — your usage isn't profiled
- Inspectable — the processing code runs in your browser, so you can read it and watch the network tab yourself
For completeness: pages load web fonts and, on blog posts, images from third-party CDNs, so those providers see your IP address like any other site request. Your document contents are never part of that.
Why this matters
For individuals: sensitive personal documents stay on your machine, removing an identity-theft vector entirely.
For businesses: confidential material never reaches a third party, which simplifies vendor due diligence and data protection paperwork considerably.
For professionals: lawyers protecting privilege, clinicians handling patient records and advisers holding client finances can all demonstrate the material was never transmitted — a much easier claim to evidence than a vendor's assurances.
Your Privacy Checklist
Before uploading a document anywhere, ask:
- Does this contain sensitive personal or financial information?
- Would I be comfortable if a stranger read it?
- Could it be used for identity theft?
- Does it contain business secrets or client data?
- Am I legally or professionally required to protect it?
If any answer is yes, use a client-side tool instead.
The Bottom Line
Free online PDF tools are convenient, and for a menu or a flyer the convenience is worth it. For anything sensitive, the trade is worse than it looks.
Every upload means:
- Trusting an organisation you can't audit with readable copies of your documents
- Creating copies on infrastructure outside your control, possibly outside your jurisdiction
- Potentially breaching a confidentiality obligation you've signed
- Adding your files to whatever that service's next security incident exposes
Client-side processing gives you the same functionality without that trade. Your tax returns, medical records and contracts can stay exactly where they belong: on your device.
Try it — and check the network tab
Every tool runs in your browser. Verify it yourself rather than taking our word for it.
Explore Our Tools