Blog
On sharing passwords, keys, and sensitive files — without leaving them behind
-
Key in the URL or a Separate Passphrase? How One-Time Links Differ
Most one-time secret links put the decryption key in the URL. Some keep it out. What each design protects against, where each one fails, and how to choose.
-
Why Link Previews and Email Scanners Burn One-Time Links
Slack unfurls, Teams previews, and email security scanners open links before people do. Why that destroys some one-time secrets, and how a service can be built so it doesn't.
-
Is It Safe to Send Passwords Over Slack?
A password pasted into Slack lives on in search, exports, integrations, and backups. What actually happens to it on each plan, and a safer way to hand one over in Slack.
-
Is It Safe to Share Passwords in Microsoft Teams?
Teams chats are copied into Exchange mailboxes where retention policies and eDiscovery can reach them. What that means for a password sent in a chat, and what to do instead.
-
How to Send a Password by Email (and Why You Usually Shouldn't)
Email is stored in at least two mailboxes and their backups, and "confidential" modes are not end-to-end encryption. How to send a password over email without leaving it there.
Subscribe with the Atom feed. Looking for step-by-step instructions instead? See the guides.