Your return does not leave your browser
That claim is load-bearing for a page that asks to see a tax return, so here is precisely what it means, what the one exception is, and how you can check it yourself.
What the preview does
The file you choose is read by code already running in your browser tab. Its text is parsed there, the figures are held in memory on your own machine, and the page redraws. At no point is the file, its text, or any figure sent anywhere.
- No upload. There is no server to receive it. The site is a set of static files.
- No storage. Nothing is written to cookies,
localStorage,sessionStorageor any database. Close or reload the tab and everything you entered is gone. - No account, no sign-in, no email address required.
- No analytics, no tracking pixels, no third-party scripts monitoring what you do on the page.
- No form submission. The fields are not part of a form that posts anywhere.
The one exception
Reading a PDF needs a PDF parser, and writing one by hand is not realistic. The preview uses pdf.js, fetched from a public CDN only if you actually choose a PDF file. If you use the sample, paste text, type figures in, or upload a .txt file, no third-party code is ever fetched.
When it is fetched, it is pinned and verified before any of it runs:
- The library is loaded with subresource integrity — the browser itself refuses to execute it unless its SHA-384 digest matches the one written into the page.
- Its worker file is fetched, hashed in the page with the browser's own crypto, and compared against a second pinned digest. It only runs if it matches.
- If either check cannot be performed — CDN blocked, hashing unavailable, digest mismatch — the PDF path refuses to run rather than executing unverified code over your return, and tells you to paste the text instead.
That code runs entirely on your machine and reads the PDF locally. The request that fetches it carries no information about your return; it asks for a fixed file at a fixed version, exactly as it would for any visitor.
Like every other page on this site, the preview also loads its typefaces from Google Fonts. Fonts receive no data about the page's contents.
How to check any of this
You do not have to take it on trust:
- Open your browser's developer tools, switch to the Network tab, and work through the whole review. You will see the fonts, and the pdf.js files only if you chose a PDF. Nothing else.
- Save the page and open it with no internet connection at all. Everything except PDF reading still works.
- Read the source. It is a single hand-written HTML file with no build step and no minification, and the data handling is all in one place.
If you are handling someone else's return
The technical guarantees above are about this page. They say nothing about the device you are using, who else can see the screen, or your own obligations for handling another person's tax information. If you are reviewing a client's return, your professional and institutional rules still apply in full.
Start with the sample
A built-in 2024 return lets you see exactly what the preview does before it ever touches yours.