Free One-Time Secret Link Generator

    Send a password, API key, or secret message with a link that destroys itself after one read. Encrypted at rest, optional passphrase, no account required.

    0/10,000 characters

    Hashed in your browser before sending

    Burn after read is always on for anonymous secrets. The link self-destructs after one view.
    Burn after read
    Optional passphrase
    Never expires (until read)
    • Burn-after-read by default — one view only
    • One-time secret link with optional passphrase
    • Encrypted at rest, never stored in plain text
    • Temporary by design — auto-expires
    • No account required — free secret message link
    • Privacy-preserving reveal logging

    How it works — 3 steps

    1. 1

      Type or paste the secret

      Drop in the password, API key, or secret message you need to share.

    2. 2

      Add a passphrase (optional)

      Require a passphrase so even a leaked URL can't reveal the secret.

    3. 3

      Send the link

      Share the link in chat or email. The first successful view burns the secret — it can never be read again.

    What is a one-time secret link?

    A one-time secret link is a URL that reveals sensitive content (a password, an API key, a private note) exactly once and then destroys it. After the first successful view, the encrypted payload is gone — there's nothing left on our servers to leak, screenshot from a logging system, or recover from backups.

    How to share a password securely over a link

    Type the password into the generator, optionally add a passphrase the recipient must enter, and send the link. The first reveal burns it. If you're worried about the URL leaking — for example into a screenshot, a corporate proxy log, or the wrong Slack channel — the passphrase ensures the secret stays protected even if the URL doesn't.

    The safest way to send an API key

    API keys end up in inboxes, chat history, and screenshots forever when sent in plain text. A one-time secret link removes the key from existence the moment the recipient reads it. Combine it with a passphrase shared over a separate channel for two-factor delivery — the link in email, the passphrase by phone or in person.

    A modern OneTimeSecret alternative

    OneTimeSecret pioneered the burn-after-read pattern and remains a fine choice if you want a single-purpose open-source tool. LinkPilot is a hosted alternative with a modern UI, optional file attachments on paid tiers, a full audit timeline, and a workspace that also handles your branded short links. The free anonymous tier is comparable: encrypted at rest, optional passphrase, one-time reveal, no account required.

    Why this is safer than email or chat

    Once you send a password over email or Slack, it lives forever in the recipient's inbox, in backups, and in their search history. Secret links remove the secret as soon as it's been read, so it can't be re-discovered months later by someone else.

    Frequently asked questions

    Ready for the full LinkPilot?

    Create a free account to claim your links, get private analytics, revoke after sending, set passphrases, and manage everything in one workspace.

    Related free tools

    Learn more