No account or activation
The standard environment starts without a LocalDeck account, license key, or cloud connection.
LocalDeck works locally, requires no account, and makes it clear when an action needs administrator access, internet, or removal.
The standard environment starts without a LocalDeck account, license key, or cloud connection.
Management interfaces and development services listen locally by default and are not automatically exposed to the network.
Every release includes a SHA-256 hash. The update chain rejects a file that does not match the published hash.
Files, databases, certificates, and project metadata are removed only after a clear inventory and confirmation using the project name.
Only explicit online actions use the internet, such as update checks, a Git clone, Composer packages, or an online project template. Local services, projects, databases, test mail, and certificates remain on the computer.
The ZIP edition keeps the environment in the extracted LocalDeck folder. The installer edition uses the selected installation and data locations. The dashboard shows actual paths before backups, exports, or removals are performed.
Do not publish security details in a public issue. Use GitHub Private Vulnerability Reporting so technical information can be reviewed privately first.
Private security report ↗LocalDeck is intended for development on your own Windows computer. Do not expose local Apache, MySQL, phpMyAdmin, Mailpit, or Redis ports directly to the internet.