Firefox 瀏覽器附加元件
  • 擴充套件
  • 佈景主題
    • 用於 Firefox
    • 字典與語言套件
    • 其他瀏覽器網站
    • Android 版的附加元件
登入
PrivSend — one-time encrypted secrets 預覽

PrivSend — one-time encrypted secrets 作者: Hannu64

Send end-to-end-encrypted, one-time secrets and files. The encryption runs on your device from this installed, audited copy — the server only ever sees ciphertext.

0(0 筆評分)0(0 筆評分)
下載 Firefox 並安裝擴充套件
下載檔案

擴充套件後設資料

畫面擷圖
Compose a secret message and attach files if you need to. Everything is encrypted in your browser — the server receives only ciphertext.An optional passphrase, sent to the recipient by a different route than the link, adds a second layer of protection.Copy the share link and send it to the recipient however you like. The separate status link tells you whether the secret has been opened.If the sender required a passphrase, the recipient must type it after opening the share link.The recipient can read or copy the secret and download any attachments. The secret has now been destroyed on the server.
關於此擴充套件
PrivSend sends a password, a recovery code, a document or an image — anything you would not want sitting in a chat log — as a link that works exactly once. Open it, and it is gone.

Everything is encrypted on your device before it leaves. The key never reaches the server: it lives in the part of the link after the "#", which browsers do not transmit. The server stores ciphertext it cannot read, and cannot be compelled to hand over what it does not have.

HOW YOU USE IT
  1. Click the PrivSend icon in your toolbar. A compose tab opens.
  2. Type your secret, and attach files if you need to.
  3. Optionally add a passphrase, and choose how long the link may live — one hour, one day, or at most seven days.
  4. Create the link and pass it to your recipient however you like: chat, email, read aloud on the phone. PrivSend delivers nothing for you and never asks who the recipient is.
  5. They open it, click Reveal, and the secret is decrypted on their device and destroyed on ours.

If you set a passphrase, tell your recipient by a different route than the one you sent the link by. Sending both through the same chat gives an attacker who reads that chat both halves — splitting them is the whole reason a passphrase is worth having.

WHY THE EXTENSION EXISTS

The website does the same encryption — but a website is delivered by the server on every visit, so you are trusting the server to keep sending you honest code. A server that had been compromised, or compelled, could serve one targeted person a modified script.

This extension removes that. The encryption code is installed in your browser and versioned, and is never re-fetched. Both directions run from it: composing a secret, and opening one. When you click a privsend.app share link with this extension installed, the decryption happens in your installed copy — not in a page the server hands you at that moment.

A green "Running locally" banner shows you when that is what is happening.

WHAT IT DOES

• Text secrets and file attachments in one link
• An optional extra passphrase (PBKDF2, 600 000 iterations), so the link alone is not enough
• Burn on read: the secret is destroyed the first time it is successfully read, atomically — under any amount of concurrency, at most one reader ever gets it
• You choose the lifetime: one hour, one day, or at most seven days. An unread secret is destroyed when it expires
• Opening a link does not consume the secret. A human has to click "Reveal", so mail scanners, chat link-previewers and antivirus crawlers cannot burn it before your recipient arrives
• No account, no sign-up, no email address, no tracking

WHAT THE SERVER CAN AND CANNOT SEE

Never reaches it: your text, your files, their names and types, even how many there are — and the key.

It does hold, because it must: the ciphertext, a random link id and status id, a nonce and salt (neither is secret), whether a passphrase was set, each file's size in bytes, and created/expiry/opened timestamps. No identity, and no IP address, is ever stored against a secret.

OPEN SOURCE — AND IT IS THE COPY YOU RUN

The complete client is published under the GNU AGPL-3.0:
https://github.com/hannu64/privsend-client

There is no build step and no minification. The files in that repository ARE this extension — you can read every line and compare it with what you installed, with nothing in between.

PERMISSIONS

One host, privsend.app, and no other: to upload and download the encrypted blobs, and to hand share links to the installed decryption page. No analytics, no third-party scripts (a strict Content-Security-Policy forbids them), no remote code.

Made by Zumitomi Oy, Finland.
Support and security reports: support@zumitomi.fi
由 1 位評論者給出 0 分
登入後即可幫此擴充套件評分
目前沒有評分

已儲存星等

5
0
4
0
3
0
2
0
1
0
還沒有評論
權限與資料

必要權限:

  • 存取您在 privsend.app 的資料

選用的權限:

  • 存取您在 privsend.app 的資料

開發者聲稱必須收集下列資料:

  • 私人通訊內容
了解更多
更多資訊
附加元件網址
  • 技術支援網站
  • 技術支援信箱
  • 複製附加元件 ID
版本
1.0.1
大小
210.2 KB
最近更新
8 天前 (2026年7月22日)
相關分類
  • 隱私權與安全性
  • 社交通訊
授權條款
僅 GNU Affero General Public License v3.0
隱私權保護政策
閱讀此附加元件的隱私權保護政策
版本紀錄
  • 瀏覽所有版本
新增至收藏集
檢舉此附加元件
前往 Mozilla 官網

附加元件

  • 關於
  • Firefox 附加元件部落格
  • 擴充套件工作坊
  • 開發者交流中心
  • 開發者政策
  • 社群部落格
  • 討論區
  • 回報 Bug
  • 評論撰寫指南

下載

  • Download Firefox
  • Windows
  • macOS
  • iOS
  • Android
  • Linux
  • All

最新編譯版本

  • Nightly
  • Beta

Firefox for Business

  • Enterprise

社群

  • Connect
  • Contribute
  • Developer

追蹤

  • Instagram
  • YouTube
  • TikTok
  • Bluesky
  • Podcast
  • 隱私權
  • Cookie
  • 法律資訊

除另有註明外,本站內容皆採用創用 CC 姓名標示—相同方式分享條款 3.0 或更新版本授權大眾使用。