Every file you touch here stays on your machine.
PDF, image, developer, SEO, text, student and business tools — all free, all entirely in your browser. No upload, no account, no server ever sees your data.
The toolset
Focused tools covering the everyday PDF work — pick one to get started, no account needed.
How this actually works
Each tool runs entirely with JavaScript already loaded in this page — PDF tools via pdf-lib and pdf.js, image tools via the browser's native Canvas API, and everything else with plain JavaScript. Your files or input are read into browser memory, processed, and handed back as a download or copyable result. This page itself is served by a small Laravel route; Laravel never sees your files either. The only backend in use is Supabase, and only for two optional things: signing in with a magic link, and — only if you're signed in — a log of which tool you ran and when. Two things have real limits worth knowing up front: Compress PDF flattens each page to a re-encoded image (great for scan-heavy PDFs, not ideal if you need selectable text after), and Word/Excel/PowerPoint ⇄ PDF conversion genuinely requires a server-side rendering engine, so it isn't included here — this build only ships tools that can honestly run client-side.
Questions people actually ask
What algorithm does this sign with?
HS256 (HMAC using SHA-256) — the most common symmetric JWT signing algorithm, where the same secret both signs and verifies the token.
Why isn't RS256 (asymmetric) offered?
RS256 needs a real private/public RSA key pair, which is a meaningfully bigger, riskier thing to generate and paste into a browser tool than a shared secret — HS256 covers the common "test/debug a token" case this tool is built for.
Is this safe to use with a real production secret?
Signing happens entirely in your browser and the secret is never transmitted, but treat any real production secret as sensitive regardless — prefer a test/throwaway secret when you can.
Does it validate my header and payload JSON?
Yes — both need to be valid JSON before signing; you'll get a clear error if either isn't.
Can I decode the JWT this produces?
Yes — paste it into this site's JWT Decoder to inspect the header and payload, or back into the algorithm field here to verify by re-signing and comparing.
What claims should I include in the payload?
Whatever your use case needs — common ones are "sub" (subject/user ID), "iat" (issued-at timestamp), and "exp" (expiry timestamp), but the payload is just arbitrary JSON, not a fixed schema.
Does it set "iat" or "exp" automatically?
No — the payload is used exactly as you type it; add any timestamp claims yourself if you need them (the Unix Timestamp Converter can help compute the right value).
Is my secret sent anywhere?
No — signing uses the Web Crypto API entirely in your browser; the secret, header, and payload are never transmitted.
Is this really free, and is there a file size limit?
Yes — no account, no paywall. Since processing happens in your browser's memory rather than uploading anywhere, the practical limit is your device's available RAM, not a server quota. Very large files (500+ pages) may run slower, especially for Compress and PDF→JPG.
Does anything about my file get sent anywhere?
No. Every tool runs with pdf-lib/pdf.js loaded in this page; your file is read into browser memory and never leaves it. The only network call this app makes for your account is Supabase auth — and that only stores which tool you ran and when, never file content.
Why isn't Word/Excel/PowerPoint → PDF included?
Converting Office formats accurately needs a real rendering engine (what Word or LibreOffice use internally) — no browser library does this reliably. Rather than ship a broken version, it's left out.
Does TechDriven Tools have OCR (text recognition)?
Yes — OCR PDF recognizes text in scanned or photographed pages using Tesseract.js, running entirely on your device, and gives you a searchable PDF or a plain text file. Nothing is uploaded for this either.
Can I use this without an internet connection?
Once the page and its libraries have loaded once, yes — the tools themselves need no network access. Signing in and viewing history do require a connection, since those talk to Supabase.
What happens to the "history" if I sign in?
Only a row per tool run — the tool's name and a timestamp. No filename, no file content, ever. You can see the full list any time via the History button.
Are the non-PDF utilities (password generator, JSON formatter, etc.) private too?
Yes — same rule as the PDF tools. Word Counter, Case Converter, Password Generator, UUID Generator, Base64, Hash Generator, JSON Formatter and JWT Decoder all run with plain JavaScript already loaded in this page; nothing you type or paste is sent anywhere.