Security & Privacy
No compromises. No backdoors. Your secrets stay secret.
AES-128-GCM
Military-grade symmetric encryption
Zero Knowledge
We can never see your data
Auto-Destruct
Deleted immediately after viewing
Encryption Standard
PassLink uses AES-128-GCM (Advanced Encryption Standard with Galois/Counter Mode), the same encryption standard approved by the U.S. National Security Agency for top-secret information.
- β128-bit key size - 2^128 possible combinations, impossible to brute force
- βGCM mode - Provides both confidentiality and authenticity
- βRandom IV - Each secret uses a unique initialization vector
Zero-Knowledge Architecture
The encryption key is generated in your browser and embedded in the URL fragment (after the # symbol). By design, URL fragments are never sent to serversβthis is a fundamental security feature of all web browsers.
What We Store
We Store
- β’ Encrypted blob (unreadable)
- β’ Expiration timestamp
- β’ Password hash (if set)
We Never Store
- β’ Your original secret
- β’ Encryption keys
- β’ IP addresses or logs
- β’ Personal information
Self-Destruction Protocol
PassLink implements a strict "burn after reading" policy:
- 1Recipient opens the link and decrypts the secret in their browser
- 2Simultaneously, a DELETE request is sent to our servers
- 3The encrypted data is permanently removed from our database
- 4The link becomes permanently invalid
Open Source & Auditable
PassLink's code is open for inspection. Don't trust usβverify our security claims yourself.
Start Sharing Securely