PRIVATE BY DESIGN

Share freely.
Leave nothing
behind.

A little less internet. A lot more privacy. Send files, code, and notes with encryption that starts in your browser. No account needed.

Encrypted in your browserExpires in 24 hours by default
For your eyes. And theirs.

The key stays in your link. Your content stays yours.

Small footprint. Strong privacy.AES-256-GCM encryptionUp to 5 GB per share

Encrypted 629,025 files

How it works

You choose what to share. Your browser encrypts it. We store only ciphertext under a random ID. The key travels in the #fragment of the link — browsers never send fragments to servers.

  1. 01

    Compose

    Paste code, write text, or drop files. All metadata is removed from Images and PDFs.

  2. 02

    Encrypt

    A fresh AES-256 key seals the payload in your browser. We never see plaintext.

  3. 03

    Vanish

    Send the link. By default the blob is wiped after 24 hours — or keep it active for 3 or 5 days.

Built for privacy

Secure, anonymous file sharing with no accounts, no tracking, no cookies and automatic 24-hour self-destruction by default — or keep a link active for 3 or 5 days. Built for journalists, sources, and anyone who values their data and privacy.

Abuse prevention without keeping your data

We still need to stop spam and disk flooding. The controls below are designed to do that without building profiles or attaching identity to what you share.

  • Encrypt first

    Your browser seals files, code, and messages before upload. We store ciphertext — not readable content — so abuse checks never need to inspect what you shared.

  • Keys stay off the server

    The decryption key lives in the link’s #fragment. Browsers do not send that part to us, so limiting uploads does not give us a way to open your shares.

  • Short retention

    File and code shares wipe after 24 hours by default, or after 3 or 5 days if you choose. Secure contact pages last 5 days. Even a flooded disk clears itself on a short clock.

  • Size and rate caps

    Uploads are capped (up to 5 GB). New shares are rate-limited per network to block mass spam. Those counters stay in memory only — not written into share records or access logs.

  • No accounts, no tracking

    There is nothing to sign into and no analytics cookies. We do not score visitors or keep a history of who shared what.

  • What we never attach to a share

    Shares are random IDs plus ciphertext and an expiry time. We do not store your IP, email, or device info on the encrypted object itself.

Verify privacy

Don't take our word for it — check in your browser. Encryption, cookies, and network requests you can inspect yourself.

  1. 01

    No cookies

    Open DevTools → Application → Cookies. This site should list none. We never set cookies or tracking IDs.

  2. 02

    Key stays in #fragment

    After you create a link, look at the address. Everything after # is the decryption key. Open DevTools → Network and confirm requests do not include that fragment — browsers never send it to servers.

  3. 03

    Uploads are ciphertext

    Share a small test file while Network is open. The upload body is encrypted binary, not readable PDF or text. Plaintext never leaves your browser.

  4. 04

    No third-party trackers

    In the Network panel, filter by domain. You should only see this site — no analytics, ads, or social pixels. The source is also on GitHub for review.

Tip: press F12 (or Ctrl+Shift+I / Cmd+Option+I) to open DevTools, then use the Application and Network tabs above.

Secure Contact

To protect your privacy we communicate using an encrypted key just like sharing files. This key gives you access to a temporary secure page. Check the page often for a response to your message from the creator. The link and page are deleted after 5 days.

Zero Linkno cookies · no logs · no accounts · 24h default