RedactLocal All tools →
Privacy · Inspect

Check What Your File Reveals

Inspect PDFs and images for hidden metadata and privacy-related information before sharing them.

Your file stays on your device.Scanning happens locally in your browser. Your file is not uploaded to RedactLocal.

Drop a file here
or click to choose a file
PDF, JPG, PNG, WebP, HEIC · scanned on your device

How it works

  1. Drop your fileAdd a PDF or an image. It never leaves your device.
  2. See the findingsThe scanner reads the file locally and lists what it actually contains — metadata, links, annotations and more.
  3. Act on what mattersClean safe metadata in one click, or jump to the right RedactLocal tool to handle the rest.

What can files reveal?

A file usually carries more than what you see on screen. A PDF can record the author’s name, the software that made it, precise timestamps, comments, links, embedded attachments, form data and even document-level JavaScript. A photo can embed the camera and lens, the date and time it was taken, the editing software — and, for photos taken on a phone, the exact GPS coordinates of where you were standing. None of this shows on the page or in the picture, but it travels with the file when you send it.

What RedactLocal checks

For PDFs: document metadata (title, author, subject, keywords, creator, producer, dates), XMP metadata, annotations and comments, external links and their domains, embedded attachments, document and page JavaScript, interactive form fields, signature fields, optional-content layers, whether the text is searchable, the page count and sizes, and whether the file is encrypted.

For images (JPG, PNG, WebP, HEIC): EXIF metadata including camera make and model, lens, capture date, editing software, orientation, author/artist, copyright and description; GPS location; XMP and ICC colour-profile presence; PNG text chunks; and any data appended after the end of the image.

The scanner reports only what it genuinely detects. Where something can’t be verified reliably in a browser, it says so rather than guessing. It never invents a “risk score”.

Why local scanning matters

To tell you what a file reveals, a scanner has to read the whole file — metadata, structure and all. Doing that in the browser means none of it is uploaded: your document, its hidden details and any GPS coordinates stay on your device. A server-side scanner would have to receive the very information you’re trying to keep private. RedactLocal reads the file in memory on your machine and forgets it the moment you leave the page.

Frequently asked questions

Are my files uploaded?

No. The scan happens locally in your browser. Your file is never sent to RedactLocal or anywhere else.

Can PDFs contain hidden metadata?

Yes. PDFs can contain author details, software information, dates, annotations, links, attachments and other document data that is not visible on the page.

Can photos reveal my location?

Some photos — especially those taken on a phone — contain GPS coordinates in their EXIF metadata, which can reveal where the picture was taken. The scanner flags this and only shows the coordinates if you choose to expand the finding.

Does the scanner modify my file?

No. Scanning is read-only. Nothing changes unless you explicitly choose a cleanup action, which creates a new, separate file for you to download.

Can RedactLocal detect everything hidden inside every file?

No. File formats are complex and some information may not be detectable in the browser. The scanner reports only what it actually finds, and is clear about what it cannot verify — for example, it cannot reliably detect invisible or off-page text, so it won’t claim to.