Share it once.
Then it’s gone.
Send a password, a login, or a live 2FA code as a link that burns after it’s seen. Encrypted on your device before anything is sent.
Or . Decoded in your browser, never uploaded.
Live preview: . If this matches your authenticator, the secret is right.
Or . It's decoded in your browser, never uploaded.
Live preview: . If this matches your authenticator, the secret is right.
Your link is ready
The part after # is the decryption key. It never reaches our servers.
Check whether it's been opened, or revoke it early. Shown only once.
Verify your email and this share appears in your dashboard with its open history.
Check your email to confirm.
Need a secret from someone? Request it instead
From paste to ash
No account, no install, nothing to teach the other person.
Seal it
Your secret is encrypted on your device before anything leaves it. What we receive is a sealed box we cannot open.
Send the link
The key rides inside the link, in a part browsers keep to themselves. It never reaches our servers.
It burns
One reveal and the secret is destroyed. Unopened links burn on their own when they expire.
More than passwords
One link can carry everything the other person needs to get in.
Live 2FA codes
Share a code that keeps rotating in their browser, not a screenshot that dies in 30 seconds.
Full logins
Username, password, 2FA, and notes in a single link. Everything needed to sign in, gone after one read.
Secret requests
Need a password from someone? Send a request link. Their reply is sealed to you alone.
What we never see
Your secret, your key, your passphrase, the 2FA seed. We store a sealed box and an expiry date. That is the whole list.
Share a secret