Privacy Policy
Last updated: 8/14/2026
At DevOpsFix ("we", "our", or "us"), we respect your privacy and are strongly committed to keeping any information we obtain from you or about you secure and safe. This Privacy Policy describes our practices with respect to personal information we collect from or about you when you use our website and services (collectively, the "Services").
1. Information We Collect & Zero-Knowledge Architecture
DevOpsFix is designed with a strict privacy-first, zero-knowledge architecture. The core functionality of our suite of online developer tools (including Kubernetes Gateway API & HTTPRoute Builder, Kubernetes RBAC Role & RoleBinding Builder, Kubernetes Secret & ConfigMap Generator, Kubernetes Resource & Capacity Sizing Calculator, Docker Build Optimizer, Docker Compose to Kubernetes Converter, Dockerfile Security Scanner, Docker Run to Docker Compose Converter, Kubernetes NetworkPolicy Generator, Docker Compose Generator, Dockerfile Generator, Kubernetes YAML Builder, Nginx Config, JWT Decoding, Base64 Encoding/Decoding, OpenSSL Key & CSR Generation, SSL Expiration Checking, API Testing, and Secure Password & Secret Generation) operates 100% client-side within your web browser. This ensures that sensitive Dockerfile instructions, CLI inputs, environment variables (`-e`), volume paths (`-v`), private keys, Certificate Signing Requests (CSRs), pod label selectors, container resource limits, RBAC permissions, Gateway API listeners, HTTPRoute backends, JWT tokens, and secret passwords are never transmitted to, processed by, or stored on remote servers.
Client-Side Cryptographic & CLI Privacy Guarantee:
- Kubernetes Gateway API & HTTPRoute Builder: Gateway specs, Listeners, TLS secret references, HTTPRoute path matchers, and weighted traffic splits are built and formatted into `gateway.networking.k8s.io/v1` YAML manifests 100% client-side inside local browser memory. Your traffic routing architecture, backend service names, and TLS secrets are never transmitted over the network or saved on remote servers.
- Kubernetes RBAC Role & RoleBinding Builder: RBAC rule matrices, API groups, resource scopes, allowed verbs, ServiceAccount definitions, and binding subjects are built and formatted into `rbac.authorization.k8s.io/v1` YAML manifests and `kubectl` CLI commands 100% client-side inside local browser memory. Your cluster architecture, ServiceAccounts, and access control policies are never transmitted over the network or stored remotely.
- Kubernetes Secret & ConfigMap Generator: Environment variable keys, plaintext database passwords, Base64-encoded strings (`data:`), TLS certificates (`tls.crt`/`tls.key`), and Docker registry authentication tokens (`.dockerconfigjson`) are formatted into `v1` YAML manifests and `kubectl` CLI commands 100% client-side inside local browser RAM. Your credentials, .env files, and secret configurations are never transmitted over the network or saved on remote servers.
- Kubernetes Resource & Capacity Calculator: Pod container CPU/Memory requests & limits, sidecar specs, replica scaling ranges, and cluster node hardware profiles are calculated into `apps/v1` and `v1` YAML manifests 100% client-side in browser memory. Your internal workload specifications and capacity metrics are never uploaded, logged, or saved on any remote database.
- Kubernetes NetworkPolicy Generator: Pod match labels (`podSelector`), namespace selectors (`namespaceSelector`), corporate CIDR subnets (`ipBlock`), exception CIDRs, and port rules are compiled into `networking.k8s.io/v1` YAML manifests 100% client-side in browser RAM. Your internal pod architecture, namespace names, and IP ranges are never uploaded, logged, or saved on any remote server.
- Dockerfile Security Scanner: User-provided Dockerfiles, environment variables (`ENV DB_PASSWORD=...`), build arguments (`ARG API_KEY`), and secret patterns are parsed and audited strictly inside local browser JavaScript memory using AST tokenizers. Your Dockerfile contents and security audit findings are never uploaded, logged, or saved on any backend database.
- Docker Run to Compose Conversion: Shell commands, environment passwords (`POSTGRES_PASSWORD`, `MYSQL_ROOT_PASSWORD`), secret flags, and server paths pasted into our converter are parsed using browser JavaScript tokenizers in local RAM. Command parameters are never uploaded, logged, or saved on any remote database.
- OpenSSL CSR & Key Generation: All req.conf files, Subject Alternative Name (SAN) structures, and key parameters generated or formatted via our tools run in local browser RAM. Private keys and CSR payloads are 100% ephemeral and never logged, cached, or transmitted over the network.
- Secure Password & Secret Generator & JWT Decoder: Utilizes your browser's native Web Cryptography API (
crypto.getRandomValues) directly inside local memory. Passwords, API tokens, JWT claims, and secret keys are calculated locally and never transmitted to any backend server.
2. Administrative Portal Privacy & Access Controls
DevOpsFix maintains an administrative management portal (`/private`) strictly restricted to authorized platform administrators. Access to this portal is protected by cryptographically salted PBKDF2 password hashing and HMAC-SHA256 session verification. All administrative endpoints enforce strict HTTP X-Robots-Tag: noindex, nofollow, noarchive response directives to prevent search engine indexing. No end-user browsing data or personal developer inputs are collected or monitored by the administrative portal.
3. External AI Models and Third-Party Services
Our AI World directory lists curated generative AI models. Please be aware that:
- We only provide informational listings. If you choose to visit or use any of the AI models listed, you will be subject to their respective privacy policies.
- We do not share any of your personal data or generated configurations with third-party AI providers.
- You should review the data handling and retention policies of any AI provider before submitting sensitive prompts or data to their platforms.
4. How We Use Your Information
We use non-sensitive information we collect for the following purposes:
- To provide, maintain, optimize, and improve our online tools and Services.
- To respond to your comments, questions, and support inquiries via our contact form.
- To send technical notices, updates, security alerts, and administrative messages.
- To monitor and analyze aggregate usage trends to enhance tool performance.
5. Cookies, Advertising Technologies & Safe Browsing
We use cookies and similar tracking technologies strictly to maintain user site preferences and maintain security:
- Essential Cookies: Required to enable core site functionality (e.g., preserving dark/light theme state, recording cookie consent choices, maintaining administrator sessions).
- Analytics & Ads Cookies: Used by Google Analytics and advertising partners (e.g., Google AdSense) to serve relevant non-intrusive advertisements and analyze visitor statistics.
- Google Safe Browsing & Anti-Phishing Compliance: DevOpsFix complies strictly with Google Safe Browsing guidelines. We do not host deceptive content, social engineering popups, fake download buttons, or credential harvesting forms.
6. Data Security & Storage Controls
We implement industry-standard technical and organizational security measures to protect the security of any information we process. Because tool calculations occur on your local device, risk of remote server key exposure or secret compromise is eliminated by design.
7. Data Sharing & Third-Party Processing
We do not sell, rent, or trade your personal information to third parties. We may share anonymized usage metrics with cloud hosting and infrastructure partners (e.g., Vercel) strictly to maintain web server availability and deliver content efficiently.
8. Your Data Protection Rights
Depending on your jurisdiction (e.g., GDPR, CCPA), you have the right to access, update, or request deletion of any personal data we hold about you. You may exercise these rights by contacting us.
9. Updates to This Privacy Policy
We may update this Privacy Policy periodically. Any revisions will be published on this page with an updated "Last updated" date.
10. Contact Us
If you have any questions regarding this Privacy Policy or data security practices, please visit our Contact page.
