Security Architecture
Our core security thesis is built on mathematical minimization: Data that is never retained cannot be breached.
256-Bit TLS 1.3 Encryption
All connections to PhotoResizer.us are encrypted end-to-end via HSTS and TLS 1.3 with Perfect Forward Secrecy (PFS).
Zero-Storage Ephemeral RAM
Image manipulations occur in volatile execution memory and are irreversibly wiped after conversion cycles.
PCI-DSS Level 1 Payments
Financial transactions are tokenized directly through Stripe. No cardholder data ever touches our application servers.
Client-Side WebAssembly
Facial landmarks and head height ratios are computed locally inside your browser, preventing raw biometric leakage.
Security Vulnerability Disclosure
If you are a security researcher and believe you have identified a vulnerability or configuration issue, please report it directly to our security response team at [email protected]. We acknowledge reports within 24 hours.