Cinderpass
Frequently asked questions
How Cinderpass works, how strong the security is, and what happens to your secrets.
Using the app
What happens when someone opens my link?
▾
Can I open the link myself to check it worked?
▾
What is the difference between Direct share and Inbound request?
▾
What does the passphrase do and when should I use it?
▾
What if the link expires before the recipient opens it?
▾
Can I cancel a secret after sending it?
▾
Is there a size limit for secrets?
▾
Security
Does Cinderpass ever see my secret?
▾
Where is the decryption key stored?
▾
How is the decryption key generated?
▾
What happens if someone intercepts the link in transit?
▾
How strong is the encryption?
▾
What does the passphrase protect against specifically?
▾
Can Cinderpass employees read my secrets?
▾
What if two people open the link at the same time?
▾
Has Cinderpass been independently audited?
▾
Trust & verification
How do I know the deployed app matches the open-source code?
▾
Can I self-host Cinderpass?
▾
Is the source code open?
▾
Data & privacy
What data does Cinderpass store?
▾
How long is data retained?
▾
Is any personal information collected?
▾