Secret-link mode
AnonPaste generates a random key and places it after the # in the complete link. Browsers do not send that fragment to the server, so recipients need the complete link to decrypt.
Encrypt text or code in your browser using a complete Secret link or a password. No account required.
This page is for encrypted text only. For text + files, polls, embeds, tags, and more, use the main paste creator.
AnonPaste generates a random key and places it after the # in the complete link. Browsers do not send that fragment to the server, so recipients need the complete link to decrypt.
Your password derives the browser encryption key. Send the paste link and password separately when that better matches your sharing workflow.
New encrypted pastes use a versioned AES-256-GCM envelope with fresh random IVs. The browser encrypts content before upload; the server stores encrypted values plus the visible information needed to deliver and operate the paste.
Expiry and burn-after-view control how long the stored paste remains available. They cannot erase copies a recipient already made. AnonPaste cannot recover a lost Secret link key or password.
The server does not receive the Secret-link fragment key or your password. It stores the encrypted payload and the visible operational fields described in the encryption specification.
No. Keep the complete Secret link or password. Losing it means the encrypted content cannot be recovered through AnonPaste.
No. Encryption protects the content fields covered by the envelope, but delivery, abuse prevention, expiry, and service operation require some visible fields and request metadata.
No. A recipient who can decrypt and read content can copy it, save it, or take a screenshot. Share only with people you trust.