PrivSend — encrypted one-time secrets & files Firefox

PrivSend — encrypted one-time secrets & files

제작자: Hannu64 Add-on
Send a password or file as a one-time link, or receive encrypted messages and files at your own drop address. Everything is encrypted on your device by this installed copy - the server only ever sees ciphertext. No account. English and Finnish.

특징 및 기능

PrivSend does two things, and both of them encrypt on your device.

SEND a password, a recovery code, a document or an image — anything you would not want sitting in a chat log — as a link that works exactly once. Open it, and it is gone.

RECEIVE with a drop address: a link you can publish or hand out, that lets anyone send you an encrypted message and files without an account. Only you can read what arrives.

The key never reaches the server. On a share link it lives in the part after the "#", which browsers do not transmit. On a drop, every message is sealed to your public key, and the private half is unwrapped only by your passphrase, in your browser. The server stores ciphertext it cannot read, and cannot be compelled to hand over what it does not have.

HOW YOU SEND

  1. Click the PrivSend icon in your toolbar. A compose tab opens.
  2. Type your secret, and attach files if you need to — up to ten, 25 MB each.
  3. Optionally add a passphrase, and choose how long the link may live: four hours, one day, or at most seven days.
  4. Create the link and pass it to your recipient however you like: chat, email, read aloud on the phone. PrivSend delivers nothing for you and never asks who the recipient is.
  5. They open it, click Reveal, and the secret is decrypted on their device and destroyed on ours.
If you set a passphrase, tell your recipient by a different route than the one you sent the link by. Sending both through the same chat gives an attacker who reads that chat both halves — splitting them is the whole reason a passphrase is worth having.

HOW YOU RECEIVE — DROP ADDRESSES

  1. Create a drop address and choose a passphrase. It protects your inbox and is your only key: it never reaches the server, and it cannot be reset.
  2. You get two links: a public one to hand out or publish, and a private console link that opens your inbox. Keep the second to yourself.
  3. Anyone holding the public link can write to you and attach files, with no account and nothing to install.
  4. Unlock your inbox with your passphrase to read what arrived. Messages stay until you delete them or the retention you chose runs out — 7, 14 or 30 days.
A drop address is the mirror image of a share link. A share link is one-time and burns on read; a drop inbox is yours to keep, and drop files can be downloaded again.

WHY THE EXTENSION EXISTS

The website does the same encryption — but a website is delivered by the server on every visit, so you are trusting the server to keep sending you honest code. A server that had been compromised, or compelled, could serve one targeted person a modified script.

This extension removes that. The encryption code is installed in your browser and versioned, and is never re-fetched. Every page that touches a key runs from it: composing a secret, opening one, writing to a drop address, and your own inbox. Open a privsend.app link with this installed and the extension takes over, however you arrived — a bookmark, a search result, a link from a friend.

A green "Running locally" banner shows you when that is what is happening.

WHAT IT DOES

• Text and file attachments in both directions — up to ten files, 25 MB each • Share links burn on read: destroyed the first time they are successfully read, atomically — under any amount of concurrency, at most one reader ever gets it • You choose the lifetime: four hours, one day, or at most seven days. An unread secret is destroyed when it expires • Drop addresses for receiving: anonymous senders, no account on either side, retention you control • An optional extra passphrase on a share link (PBKDF2-HMAC-SHA-256, 600 000 iterations), so the link alone is not enough • Drops are sealed with ECDH on P-256, HKDF-SHA-256 and AES-256-GCM — the browser's own WebCrypto throughout, nothing hand-rolled, no third-party library • Opening a share link does not consume the secret. A human has to click "Reveal", so mail scanners, chat link-previewers and antivirus crawlers cannot burn it before your recipient arrives • English and Finnish, switchable on every page • No account, no sign-up, no email address, no tracking

WHAT THE SERVER CAN AND CANNOT SEE

Never reaches it: your text, your files, and their names and types — and the key.

It does hold, because it must: the ciphertext, random ids, a nonce and salt (neither is secret), whether a passphrase was set, how many files there are and each one's size in bytes, and created, expiry and opened timestamps. No identity, and no IP address, is ever stored against a secret or a drop message.

OPEN SOURCE — AND IT IS THE COPY YOU RUN

The complete client is published under the GNU AGPL-3.0: https://github.com/hannu64/privsend-client

There is no build step and no minification. The files in that repository ARE this extension — you can read every line and compare it with what you installed, with nothing in between.

PERMISSIONS

One host, privsend.app, and no other: to upload and download the encrypted blobs, and to hand privsend.app links to the installed pages that decrypt them. No analytics, no third-party scripts (a strict Content-Security-Policy forbids them), no remote code.

Made by Zumitomi Oy, Finland. Support and security reports: support@zumitomi.fi

사용자 증가 및 다운로드 통계

Manifest V3 Add-on
제작자:
Hannu64
일일 사용자:
1
버전:
1.1.0 마지막 업데이트: 2026-07-31
버전 코드:
6386622
생성 날짜:
2026-07-22
위험:
Low risk impact High risk likelihood
호스트 권한:
  • https://privsend.app/*
콘텐츠 스크립트 매칭:
  • privsend.app
크기:
293.10KB
이메일:
su*****@zumitomi.fi
URL:
웹사이트 ,개인정보 보호정책
전체 설명:
자세한 설명 보기
소스:
Firefox 부가 기능 스토어
데이터 수집일:
2026-08-18
통계 및 순위 비교:

개발자에게 문의

Chrome-Stats는 이 Firefox 부가 기능을 소유하지 않습니다. 아래 정보를 사용하여 Firefox 부가 기능 개발자에게 문의하세요.
에 의해 개발:
Hannu64
Firefox 부가 기능 스토어
https://addons.mozilla.org/firefox/addon/privsend/
메일 주소:
su*****@zumitomi.fi
웹사이트:
https://privsend.app/how

PrivSend — encrypted one-time secrets & files는 안전한가요?

위험 영향도
위험 영향도는 확장 프로그램이 접근할 수 있는 추가 권한의 수준을 측정합니다. 낮은 위험 영향도의 확장 프로그램은 많은 해를 끼칠 수 없지만, 높은 위험 영향도의 확장 프로그램은 비밀번호 도용, 보안 설정 우회, 개인 데이터 접근 등 많은 피해를 줄 수 있습니다. 높은 위험 영향도의 확장 프로그램이 반드시 악의적인 것은 아닙니다. 그러나 악의적으로 변한다면 매우 해로울 수 있습니다.

PrivSend — encrypted one-time secrets & files은(는) 매우 최소한의 권한만 요구합니다.

위험 영향도 분석 세부 정보
  • High Injects scripts into web pages, which may alter or extract site contents, resulting in a substantial risk.
  • Low ******* ****** ** *** ********* ******** ************
위험 가능성
위험 가능성은 Firefox 부가 기능이(가) 악의적으로 변할 가능성을 측정합니다. 이는 Firefox 부가 기능 스토어에서의 게시자와 Firefox 부가 기능 평판, Firefox 부가 기능이(가) 존재한 기간, 그리고 Firefox 부가 기능에 관한 다른 신호들에 의해 결정됩니다. 우리의 알고리즘은 완벽하지 않으며, 악의적인 확장 프로그램을 탐지하는 새로운 방법을 발견함에 따라 변경될 수 있습니다. Firefox 부가 기능을(를) 설치할 때는 항상 주의하는 것이 좋습니다.

PrivSend — encrypted one-time secrets & files은(는) 최근에 추가되었으며, 위험 수준을 정확하게 평가하기에 충분한 데이터를 수집할 만큼 오래 존재하지 않았습니다.

위험 가능성 분석 세부 정보
  • High This extension was recently updated in the past month. New updates may not be stable or safe.
  • High **** ********* *** ******** ****** *** ********** *** *** ** ****** ** *****
  • High **** ********* *** *** **** ****** ********* ********** *** *** ** ****** ** *****
Extension Guard
확장 경비대

Extension Guard로 사용 중인 모든 확장 프로그램을 발견하고, 위험을 분석하며, 차단 정책을 적용하세요

브라우저를 안전하게 하세요
전체 위험 분석 세부 정보를 보려면 업그레이드하세요

최고의 PrivSend — encrypted one-time secrets & files 대안

다음은 PrivSend — encrypted one-time secrets & files과(와) 유사한 Firefox add-on입니다: