Confidential drop
Submissions are encrypted locally before transit. The server only receives ciphertext.
Payloads are encrypted in your browser with AES-256-GCM before upload.
AES keys are wrapped with RSA-OAEP (SHA-256). Only the owner can decrypt.
Secure notes generate a one-time link with the key in the URL fragment.
Transport security: TLS in transit. Encryption: AES-256-GCM payload + RSA-OAEP (SHA-256) key wrap.