// Legal
Privacy policy.
A short, honest description of what data DevSpeedTools handles — and what we don't.
The short version: every tool runs in your browser. We do not collect, log, or transmit the contents of your inputs or outputs.
1. What this policy covers
DevSpeedTools ("we", "us") provides browser-based developer utilities. This privacy policy explains what data we collect, what we do not, and how the website behaves when you use it.
2. Tools run in your browser
Every converter, formatter, validator, encoder, and decoder on DevSpeedTools runs entirely client-side using JavaScript. The data you paste into a tool is processed by your browser and is not sent to our servers.
3. Information we do not collect
We do not collect the contents of your inputs or outputs. We do not log the text, tokens, or files you process with our tools. We do not require accounts, and we do not associate usage with personal identifiers.
4. Server logs
Our hosting provider (Cloudflare) records basic request metadata — IP address, user-agent, requested URL, response code — for security and capacity planning. We do not have access to the bodies of your requests because tool processing does not produce any.
5. Cookies and local storage
We use a single piece of local storage to remember your theme preference (light/dark). We do not use advertising cookies or third-party tracking cookies.
6. Third-party services
We use Google Analytics for aggregate traffic statistics (page views, referrers, device types). Google Analytics does not track the contents of your tool inputs or outputs. We also use the Inter typeface, loaded from rsms.me. We do not embed social trackers or third-party JavaScript that can read your inputs.
7. Advertising
Some pages may display lightweight advertisements in clearly labelled slots to help fund the project. Advertisements are placed away from tool controls, never overlap editor content, and are not based on the contents of what you typed.
8. Children
DevSpeedTools is not directed at children under 13, and we do not knowingly collect any information from children.
9. Changes
If we make material changes to this policy we will update the "Last updated" date below. Continued use of the site after changes indicates acceptance of the new policy.
10. Contact
Questions about this policy can be sent to [email protected].
How client-side processing protects your data.
The core privacy guarantee of DevSpeedTools is that every tool runs entirely in your browser using JavaScript. When you paste a YAML file, decode a JWT token, or convert JSON to another format, the processing happens locally on your device. No network request is made with your input data, and no data is transmitted to our servers or any third party.
You can verify this claim by opening your browser's Developer Tools and navigating to the Network tab. When you use any tool on DevSpeedTools, you will see that no request carries your input data. The only network requests are for loading the page itself, any advertisements, and analytics tracking — none of which involve the content you process with our tools.
This client-side approach means your data never leaves your device, your browser history is the only record of what you processed, and you have complete control over your information. Even if DevSpeedTools were to go offline, any tool page you have already loaded would continue to function because all processing logic is bundled with the page.
We believe this approach represents the future of developer tools — fast, private, and respectful of user data. Traditional online tools upload your data to remote servers for processing, creating unnecessary privacy risks. DevSpeedTools eliminates these risks by keeping everything local.
Your data handling rights.
Because DevSpeedTools processes all data client-side and does not collect personal information, traditional data access and deletion requests do not apply in the usual sense. Your tool inputs never reach our servers, so there is nothing for us to delete on your behalf. The only record of your usage exists in your own browser — clearing your browser history or local storage removes all traces of your activity on this site.
If you are located in the European Economic Area, you have rights under the General Data Protection Regulation (GDPR), including the right to access, rectify, or erase personal data. Since we do not collect or store personal data, these rights are effectively exercised by managing your own browser data. You may contact us at [email protected] if you have specific questions about how GDPR applies to your use of DevSpeedTools.
For California residents, the California Consumer Privacy Act (CCPA) provides similar rights. Again, because we do not sell, share, or collect personal information, the practical effect is that your data remains entirely under your control. We do not respond to Do Not Track browser signals because we do not track users in the first place.
Third-party services in detail.
Google Analytics collects anonymous usage data such as which pages you visit, how long you stay, your approximate geographic region based on IP address, and your device type. This data helps us understand which tools are most popular and where to invest development effort. Google Analytics uses cookies to distinguish unique users, but these cookies do not track your tool inputs. You can opt out of Google Analytics by installing the Google Analytics Opt-out Browser Add-on.
Cloudflare, our hosting provider, processes HTTP requests and may use cookies for security purposes such as bot detection and DDoS mitigation. These cookies are strictly necessary for the site to function and are not used for advertising or analytics. Cloudflare's privacy policy governs how they handle request metadata.
We may use Google AdSense or similar ad networks to display advertisements. These networks use cookies to serve ads based on your browsing history across different websites. You can manage ad personalization through your Google account settings or by visiting aboutads.info. Ad revenue helps us keep DevSpeedTools free and maintained.
Data retention and security.
Since all processing is client-side, we have no data to retain. Server logs from Cloudflare are retained for a limited period (typically 30 to 90 days) for security monitoring and capacity planning, after which they are automatically deleted. We do not back up, archive, or export any user data because we never receive it.
We implement standard security practices for the website itself, including HTTPS encryption, regular dependency updates, and content security policies. However, because tool data never leaves your browser, the security of your inputs depends on your own device and browser security — not on our infrastructure.
Last updated: January 2026.