typebay Security

Security

Last updated: September 2026

TypeBay's security model is simple: there is nothing to steal, because there is no server-side data.

Local-first processing

The typing test, its configuration and its results are processed and stored entirely in your browser. TypeBay has no backend, no database and no accounts, so there is no server-side store of your data to be breached.

Transport

The site is served over HTTPS on Cloudflare's network, protecting the delivery of the application code itself.

Supply chain

TypeBay is built from the open-source Monkeytype project (GPL-3.0) with its account, tracking and advertising systems removed. The full modified source is published under the project's GitHub repository for review.

Reporting a vulnerability

If you believe you have found a security issue, please report it privately through the project's GitHub repository. We appreciate responsible disclosure.