Privacy Policy
readonce, a service of Bitmule LLC (“we”, “us”), is built to know as little about your secrets as technically possible. This policy explains what we do and don’t process.
The short version
Your secret is encrypted in your browser before it reaches us. The decryption key lives in the link fragment and is never sent to our servers, and your passphrase is never sent — only a value derived from it that lets us check it without learning it. We hold ciphertext we cannot read.
What we process
- Secret content: only the encrypted ciphertext and non-decrypting metadata (creation time, expiry deadline, and whether it has been read). We cannot decrypt it.
- Account information (only if you sign up): your email address, a securely hashed password, and session tokens to keep you signed in.
- Technical & abuse-prevention data: your IP address and basic request metadata are used transiently to rate-limit and block abuse (via our provider, Arcjet), along with standard server logs.
- Device storage: a session cookie for signed-in users, and your theme preference stored in your browser’s local storage. No advertising or analytics trackers.
How we use it
To operate the Service — store and deliver ciphertext, authenticate accounts, enforce rate limits and prevent abuse, and comply with the law. We do not sell your data or use it for advertising.
Retention
A secret is deleted the moment it is read, or when it expires unopened (we sweep expired secrets automatically). If you were signed in when you created it, a content-free record (short id, timestamps, and status such as “read” or “expired”) remains on your dashboard until you delete it. Account data is kept until you delete your account or ask us to remove it.
Who we share it with
We don’t sell personal data. We rely on service providers who process data on our behalf: hosting and delivery (Vercel), our database provider, and abuse prevention (Arcjet). If file sharing is enabled, encrypted file bytes are stored with an object storage provider (AWS S3). Each processes only what it needs to run the Service. We may disclose information if required by law — but because secrets are encrypted client-side, we cannot produce their plaintext.
Your choices
You can delete your own secrets from the dashboard at any time. To delete your account or request access to or deletion of your data, email privacy@readonce.app. Depending on where you live, you may have additional rights over your personal data.
Security
We encrypt content in your browser, store only ciphertext, and hash account passwords. No method of transmission or storage is completely secure, and you are responsible for how you distribute your links and passphrases.
Children
The Service is not directed to children under 13, and we do not knowingly collect their data.
Changes
We may update this policy; we will change the date above when we do.
Contact
Privacy questions: privacy@readonce.app. Security reports: security@readonce.app.
See also our Terms of Service.