🛡️ DocSanitizer
  • Features
  • How it works
  • Privacy
  • Pricing
  • Web App
🔒 Zero-Cloud Architecture

Security & Threat Model

Effective Date: August 14, 2026

1. Security Architecture Principles

DocSanitizer is engineered around verifiable, zero-trust client-side processing:

  • Zero Cloud Infrastructure: No server-side document parsing or storage. Your documents are never uploaded.
  • Memory Safety in Rust: The core parsing and PII redaction engine is written in Rust, eliminating buffer overflows, use-after-free, and memory corruption bugs.
  • RAM-Only Lifecycle: All raw bytes and intermediate token arrays reside in transient memory and are wiped when the sanitization session ends.

2. Data Retention Matrix

DocSanitizer enforces minimal data lifetimes across all supported environments:

Data Type Lifetime Storage Location
Raw file bytes Duration of sanitization call RAM only
Parsed text & tokens Duration of sanitization call RAM only
Sanitized Markdown Until user copies or dismisses RAM only
Pro Entitlement Token Subscription period Encrypted Storage
User Settings Until user changes or resets Local Preferences

3. Vulnerability Reporting

We treat security vulnerabilities with high urgency. If you discover a vulnerability in the engine or web app, please report it directly:

📧 Security contact: eladyifee@gmail.com

Home Pricing Terms of Service Privacy Policy Refund Policy Security Model Contact & Support

© 2026 DocSanitizer / Loyal Logic. All rights reserved. 100% On-Device Privacy.