Free browser tools · no signup · no watermark
Getting ghosted has never felt this good.
File tools that can't leak your document.
Because they never receive it. Compress, convert, redact, sign and send — all in your browser.
Drop any file — it opens in the right tool
PDF · Word · image · audio · video · spreadsheet — click to browse, nothing uploaded
Just moving a file? Send a one-time link — up to 100 MB, they open it whenever · Beam it live — up to 10 GB, straight between devices
Sent a link? Just open it — there's nothing to install or sign up for.
Or jump straight to a tool
Your file never leaves your device — open DevTools and watch the Network tab.
Why is GhostX free?
The "free" tier of every other PDF / signing / secret-sharing tool is a funnel. The watermark is a tax. The trial period is a hostage situation. We thought the basic things people do with files every day should just work.
Your browser does the work
Compute happens locally. We don't need warehouses of servers, so our costs are tiny. We don't need your subscription to break even.
Tips, not subscriptions
If a tool saves you time, throw a few bucks in the jar. If it doesn't, no charge. No 'cancel anytime' chase, no surprise renewals.
Open & auditable
Open DevTools and watch the Network tab — your files are never uploaded. The single-signer flows have no upload endpoint. The code is what it claims to be.
How we stay secure
Security isn't a marketing layer here — it's the architecture. The whole point of running in your browser is that we genuinely cannot see your files even if we wanted to.
-
End-to-end encryption where it matters
GhostSend and multi-signer GhostSign use AES-GCM 256 with the key living only in the URL fragment. We hold ciphertext, never the key.
-
No upload endpoint for solo flows
GhostPDF, GhostQR, and single-signer GhostSign literally don't POST your files to any server. Verify it yourself in DevTools.
-
No account, no sign-in, no file collection
No signup and no login — and your files never leave your device on solo flows. We don't build accounts or advertising profiles; analytics is anonymous. (Like any site, our analytics and abuse-prevention do see your IP and browser.)
-
Hardened browser security policy
Strict CSP, HSTS preload, frame-ancestors lockdown, and only the third-party scripts required for analytics, payments, abuse-prevention (reCAPTCHA), and the on-device OCR / scan engines. Standards-compliant headers across every page.
-
Auto-deletion on every server-backed flow
The few products that touch our backend reap their data on a TTL: GhostSend payloads burn the moment they are read; multi-signer GhostSign documents auto-delete within about 7 days. We never keep a copy.
-
Cryptographic verification
Every signed document carries a SHA-256 audit hash you can re-verify any time on the verify page. Tamper a single byte and the hash won't match.
Try it — nothing leaves your device
No account, no upload, no watermark on the way out.
Drop any file — it opens in the right tool
PDF · Word · image · audio · video · spreadsheet — click to browse, nothing uploaded
Everything runs locally — the file never reaches a server.