Security
Security at Zerethon
Last updated: June 2026
Our tools are designed to keep your data on your device. Here's how that works, and how to report a problem if you find one.
Our security model
- Client-side execution. Most tools run entirely in your browser; your input is never transmitted to our servers.
- No accounts required. Tools work without login, so there are no credentials to leak.
- HTTPS everywhere. All pages and assets are served over TLS.
- Minimal third parties. We keep external scripts to a minimum to reduce supply-chain risk.
Reporting a vulnerability
If you believe you've found a security issue, please report it responsibly by emailing security@zerethon.com.
When reporting, please include:
- A clear description of the issue and its potential impact
- Steps to reproduce (a proof of concept helps)
- The affected URL, tool, or component
Our commitment
- We will acknowledge valid reports and keep you updated on remediation.
- We ask that you give us reasonable time to fix an issue before public disclosure.
- Please avoid privacy violations, data destruction, or service disruption while testing.