Zero-Transmission Architecture

Privacy & Security Policy

Last updated: October 10, 2026

1. Our Commitment: Local-Only Processing

At Tooltiva (accessible at tooltiva.net), privacy is not an afterthought or a marketing catchphrase—it is the foundational architecture of the platform.

All data processing, spreadsheet parsing, delimiter conversion, and JSON formatting occur 100% locally within your device's web browser. Your text and uploaded files are not included in requests to Tooltiva or its hosting provider.

2. Information We Do NOT Collect

  • We do not collect or store your uploaded CSV files or pasted text.
  • We do not require user registration, passwords, or personal credentials.
  • We do not use advertising cookies, tracking pixels, or cross-site tracking scripts.
  • We do not monetize your data or sell usage records to data brokers.

3. Analytics & Telemetry

No analytics or telemetry script is currently included in the Tooltiva application source. If deployed on Cloudflare Pages, the hosting provider may process ordinary page and asset requests under its own service policies; those requests do not include the CSV or JSON content processed by the tools.

The conversion tools do not send user-provided CSV or JSON content to an analytics service.

  • Application source contains no analytics script or conversion telemetry call.
  • Normal page and static-asset requests are handled by the hosting provider.
  • Cloudflare Web Analytics is not enabled by the application source inspected for this validation.

4. Content Security Policy (CSP) & Defense-in-Depth

To physically guarantee that our client-side applications cannot leak user inputs, Tooltiva enforces a strict HTTP Content Security Policy:

default-src 'self'; script-src 'self' 'unsafe-inline'; style-src 'self' 'unsafe-inline'; img-src 'self' data: blob:; connect-src 'self'; frame-ancestors 'none';

This policy instructs your web browser to block any unauthorized external network connection, ensuring that even in the theoretical event of a compromised dependency, user data cannot be exfiltrated.

5. Independent Audit Protocol

You can verify Tooltiva's local-processing behavior at any time:

  1. Open your browser's Developer Tools by pressing F12.
  2. Navigate to the Network tab.
  3. Paste sensitive data into any Tooltiva tool and click convert.
  4. Inspect the network log to verify that zero outgoing POST or PUT HTTP requests occur.

6. Inquiries & Maker Contact

If you have questions regarding Tooltiva's privacy practices, please contact our operating team at privacy@codingtangent.com.