Security

Your documents, handled with care

Security and privacy aren’t add-ons at Evixpdf — they’re the reason we built our own engine. Here’s exactly how we protect what you upload.

Encryption in transit & at rest

All traffic uses TLS 1.3. Data stored on our servers is encrypted at rest with AES-256.

In-house processing

Documents are converted, OCR’d, and signed by our own EvixOffice engine. Your files are never handed to a third-party conversion cloud.

Transient files, auto-deleted

Uploads are kept only long enough to complete your request and are removed automatically afterwards. We don’t build a library of your documents.

Authentication & secrets

Passwords are stored as salted hashes. API keys are hashed at rest and shown once. JWTs are signed and short-lived.

Hardened infrastructure

Access to production systems is restricted, logged, and least-privilege. Request size and rate limits guard against abuse.

Privacy-respecting by design

We collect the minimum needed to run the service, never sell your data, and don’t use your documents to train AI models.

Responsible disclosure

Found a vulnerability? We appreciate your help. Please email security@evixpdf.com with details and steps to reproduce. Give us a reasonable window to investigate and fix before public disclosure, and avoid accessing or modifying other users’ data. We’ll acknowledge your report and keep you updated.

Report a security issue

See also our Privacy Policy, DPA, and Sub-processors.

Back to the tools