Create your secret
Enter the password or confidential message you want to share. Encryption happens in your browser before anything is uploaded.
A simple way to share passwords, access credentials, and confidential notes without leaving them sitting in an email or chat history indefinitely.
Three simple steps. No account required.
Enter the password or confidential message you want to share. Encryption happens in your browser before anything is uploaded.
Copy the generated link and send it to the intended recipient using email, chat, or another channel.
The recipient opens the link to decrypt the secret in their browser. The secret is consumed when successfully claimed and expires after 72 hours if it remains unused.
The service stores encrypted data rather than the original password. The decryption key is carried in the URL fragment, which browsers do not send in HTTP requests.
The server manages the encrypted payload, its expiry, and whether it has been claimed. It does not need the decryption key to store or deliver the encrypted data. This helps protect secrets against database-only exposure, but does not protect against compromised JavaScript, a compromised device, or a recipient who copies the revealed secret.
Focused on doing one job well, without unnecessary accounts or complicated workflows.
Uses AES-256-GCM through the browser's native cryptographic API.
A secret can be claimed once. Subsequent attempts cannot retrieve the stored payload.
Unclaimed secrets expire after 72 hours.
Create a link, share it with the intended person, and you're done.