How to Verify a PDF Tool Does Not Upload Your Files
Most PDF tools make the same promise: your files are safe. But when a PDF contains contracts, tax forms, health records, or unreleased product details, a promise is not enough. The question “does this tool upload my files?” should be answerable with evidence you can see.
This guide shows how to verify a PDF tool does not upload your files using browser developer tools. It then applies that process to RSJ PDF Merge, Sort & Split, a browser-based PDF tool that processes files locally.
Why Verification Matters for PDF Tools
A cloud-based PDF merger often requires you to upload the file to a server, which is convenient but creates a data-handling risk. Once the document leaves your device, you are trusting the service to handle it correctly in transit, at rest, and after processing.
Local processing changes that model. The PDF stays on your device and is handled by the browser’s own JavaScript, WebAssembly, or worker runtime. The file bytes do not need to travel to a remote server for the merge, sort, split, rotation, or deletion to happen.
Browser-based tools have one major trust advantage over closed-source desktop software: you can inspect them. You can open the developer tools, watch the network traffic, and see whether the tool sends your document anywhere. With a desktop binary, that kind of verification is much harder.
PdfMerge sits between those two options. It gives you browser-based convenience without the upload step of a typical cloud merger. You do not need to install anything, and you can inspect the network behavior yourself.
If you are new to the idea, read What Is Local PDF Processing and Why Should You Care?. For a deeper comparison of browser-based and desktop workflows, see the article Browser-Based PDF Merger vs Desktop Software: Which Is Better?.
What a Proof of No Upload Looks Like
A proof of no upload is not a single green checkmark. It is a combination of three things:
- No network request containing file data. During a merge, split, sort, or rotate operation, the browser should not send a POST, PUT, or PATCH request with a large document payload.
- A clear architecture statement. The product should explicitly say where processing happens. RSJ PDF Merge, Sort & Split states that PDF files are processed entirely in the browser and are never uploaded to a server.
- Inspectable behavior. The claim should be testable with the browser’s developer tools, not hidden behind opaque desktop code or unverifiable server-side logic.
In practical terms, a local-processing tool should generate network traffic that looks mostly like this:
Name Method Type Size
/ GET document 2.1 kB
/assets/app.js GET script 182 kB
/assets/app.css GET stylesheet 12 kB
/assets/logo.svg GET image 1.4 kB
There should be no POST /upload with a 3 MB binary body. The only traffic should be the static assets the page needs to render and run.
If a tool also uses analytics or a CDN, those requests may still appear. That is not automatically a problem. What matters is whether the PDF content itself leaves the browser.
Step-by-Step Verification Using RSJ PDF Merge, Sort & Split
You can run this check yourself in a few minutes.
1. Open the tool
Open https://pdfmerge.rsj.de in a desktop browser. Chrome, Edge, Firefox, and Brave all expose the network inspection tools you need.
2. Open Developer Tools
Press F12 or Ctrl+Shift+I on Windows/Linux, or Cmd+Option+I on macOS. Select the Network tab.
Before you start, click Clear to remove any existing entries from the log.
3. Perform a PDF operation
Merge two small PDFs, remove a page, rotate a page, or split one PDF into multiple files in your browser. The exact operation does not matter. What matters is that the operation touches the PDF.
For a split test, the same logic applies as in How to Split a PDF into Multiple Files in Your Browser: load a PDF, apply the split operation, and watch the Network tab while the tool processes the file.
4. Observe the network activity
After the operation, look at the requests in the Network tab. You can filter the noise by clicking Fetch/XHR to hide images and stylesheets, then checking whether any upload-like request appears.
A useful filter for spotting large payloads is:
larger-than:100kB
In normal use, you should see only static assets such as HTML, JavaScript, CSS, and images. You should not see a POST or PUT request carrying your document data.
5. Repeat the check with the Chrome extension
If you use the companion Chrome extension, the extension opens RSJ PDF Merge, Sort & Split from https://pdfmerge.rsj.de. Run the same Network tab check after the extension opens the web app with the PDF from the active tab.
The extension’s options page also lets you configure which web app URL it opens, but the default workflow still lets you inspect the traffic in the same browser session.
6. Review the privacy documentation
Finally, check the tool’s published privacy policy or product description. The documentation should confirm what the network traffic already showed: files are processed locally and not uploaded. RSJ PDF Merge, Sort & Split makes this explicit in its product information.
Interpreting Results and Handling Edge Cases
After a merge or split, if you see no upload requests containing file data, the tool is processing locally as claimed.
If you see requests to third-party analytics or CDNs, assess whether they contain your file content. Many page assets and privacy-friendly analytics requests do not include the document. A small analytics beacon is different from a multi-megabyte file upload.
Some browser-based PDF tools use Web Workers or WebAssembly to handle large files. That is normal. The PDF bytes may be processed in memory or in a worker thread, but they still should not leave your browser.
For very large PDFs, you may notice higher memory usage while the tool processes the document. That is expected for local processing, especially with many pages or large page images.
If you encounter an unexpected network call with a large payload, treat it as a warning sign. Stop using the tool for sensitive files and contact the vendor for an explanation. If the answer is not satisfactory, consider an alternative.
A suspicious pattern would look something like this:
Name Method Type Size
/upload POST xhr 3.8 MB
In that case, the document may have left the browser.
Why RSJ PDF Merge, Sort & Split Is a Trustworthy Choice
RSJ PDF Merge, Sort & Split is built around local processing. The tool merges PDFs, sorts and rotates pages, removes pages, inserts custom text pages, and splits documents into separate PDF files.
The free version supports documents up to 100 pages. Paid plans lift that limit and unlock additional features such as merging ZIP archives containing PDFs and saving the result as a ZIP of individual PDFs.
The companion Chrome extension provides one-click access from the active tab, and it opens the same local-processing web app at https://pdfmerge.rsj.de.
Because the PDF never leaves your browser, the tool fits privacy-conscious workflows where contracts, personal data, or confidential business documents are involved. For a detailed breakdown of available plans, see PDF Merge Pricing Plans: Basic, Pro, and Enterprise Compared.
FAQ
How can I check if a PDF tool uploads my files?
Open the tool in your browser, press F12 to open Developer Tools, go to the Network tab, and perform a PDF operation. Look for any requests that send your file data, such as POST or PUT requests with large payloads. If only static assets are loaded, the tool is likely processing locally.
Does RSJ PDF Merge, Sort & Split upload my PDFs?
No. According to the product information, PDF files are processed entirely in the browser and are never uploaded to a server. You can verify this yourself using the Network tab as described.
What is the difference between local and cloud PDF processing?
Local processing means the PDF is handled entirely on your device using browser technologies, so the file never leaves your computer. Cloud processing involves uploading the file to a remote server for processing, which introduces data-handling risks.
Can I use RSJ PDF Merge, Sort & Split for free?
Yes, the free version supports documents up to 100 pages. Paid plans — Basic, Pro, and Enterprise — unlock additional features such as ZIP merging and splitting.
The Next Time You See a “Private” PDF Claim
Do not take a privacy promise at face value. Open the developer tools, perform a merge or split, and inspect the traffic. RSJ PDF Merge, Sort & Split makes that verification straightforward because the processing happens in the browser.
Try the same verification workflow yourself. The results should be boring — and for PDF privacy, boring is exactly what you want.
Related posts
- How to Sort PDF Pages Online: A Quick Guide
- How to Merge ZIP Files Containing PDFs
- PDF Merge Tool vs Desktop Software: Which Should You Choose?
- What Is Local PDF Processing and Why Should You Care?