Developer releases Seal, a self-hosted one-time secret sharing tool built in Node.js
A full-stack developer based in Yerevan has released Seal, an open-source, self-hosted service for sharing sensitive information such as API keys via single-use links. The tool encrypts secrets on disk using AES-256-GCM and supports optional passphrase protection, expiry settings, and view limits. Seal can be deployed locally with a single Docker Compose command and includes rate limiting and content security policy protections. The developer is transparent that the service is not zero-knowledge, meaning whoever controls the server holds the master decryption key. The project is available on GitHub and the developer is inviting community feedback on its threat model and rate-limit design.
This is an AI-generated summary. ShortSingh links to the original source for the complete article.
Discussion (0)
Log in to join the discussion and vote.
Log in