PrivShare
Zero-knowledge handoffs

Sensitive handoffs that close themselves

PrivShare hands off passwords, API keys, notes, env files, and private files through encrypted links that expire or burn after reading.

API keysProduction passwordsENV filesContractsRecovery codesPrivate notes

Encrypted packet

Ready to hand off

Armed
Packet contents
Contentprod-api-key.env
ExpirationAfter first view
PasswordRequired
priv-share.com/s/7g4x91#key-stays-in-browser
  • No Signup Needed for One-Time Shares
  • Client-Side Encryption
  • Decryption Key Stays in the Link Fragment
  • Expiration and Burn-After-Reading Controls

The model keeps keys out of server custody

PrivShare is built around a short-lived packet: choose constraints, encrypt in the browser, and store only server-safe encrypted material.

Read the full security model
  1. 01

    Encrypt locally

    Your browser creates the encrypted packet before anything is uploaded.

  2. 02

    Send the link

    The decryption key travels in the URL fragment, which never reaches the server.

  3. 03

    Close the window

    The server denies retrieval after expiration or the first burn-after-reading view.

Built for the moment before a secret becomes a liability

The interface keeps the sender focused on three decisions: what to share, who can open it, and when it disappears.

Default posture

Short-lived access, explicit recipient friction, and no plaintext storage are the default posture.

  • Zero-knowledge payloads

    Text, environment variables, and file bytes are encrypted in the browser before storage.

  • Self-destructing by design

    Burn-after-reading and expiration are enforced at the server retrieval boundary.

  • Recipient friction when it matters

    Optional share passwords and short expirations protect sensitive handoffs.

  • History when you need it

    Signed-in shares get a dashboard with status filters, revocation, and deletion. Folders are planned.

Private by default, practical for real teams

Secure handoffs show up in support, operations, healthcare, legal, and engineering. The same controls work across all of them.

Start a handoff
  • Developers and DevOpsTransfer API keys, SSH credentials, database URLs, and recovery codes.
  • Legal and complianceSend contracts, NDAs, and regulated documents with access limits.
  • Healthcare providersMove patient files and private notes through a temporary access window.
  • Business operatorsShare reports, vendor credentials, payroll files, and board materials.
  • ConsultantsHand off temporary access without leaving passwords in chat history.
  • Family emergenciesPrepare one-time access to important accounts, notes, and recovery details.

Questions worth answering before you send the link

A secure sharing tool should be clear about implemented failure modes, deletion, password loss, and who can decrypt a link.

Create the link. Keep the key out of storage.

One-time shares, accounts, and saved share history are available today. Folders and higher limits are planned.