End-to-end encrypted transfer

Send files the server can't read.

Flinger encrypts in your browser before upload. The decryption key stays in the link — our infrastructure never sees it.

Start sharing
01

Choose files

Drag or pick up to 20 files

02

Encrypted locally

AES-256-GCM in-browser

03

Share the link

Key stays in the fragment

Encrypted before it leaves your device

AES-256-GCM encryption runs entirely in your browser. Files are split into chunks, encrypted with a unique key, and uploaded as opaque blobs. The key never touches our servers.

Cipher

AES-256-GCM

Key location

URL fragment

Server access

None

Zero

Plaintext on the server

30 days

Max link lifetime

500 MB

Max file size

No account

Required to share

Key stays in the link

The decryption key lives in the URL fragment — the part browsers never send to servers. Whoever has the link can decrypt. No one else can.

Expires on your terms

Set expiry from five minutes to thirty days. Add download limits or leave it unlimited. Shares auto-delete when they expire.

Anonymous and protected

No sign-up needed. Rate limits and storage caps prevent abuse without requiring identity.

What the server knows

Encrypted blob sizes, download counts, expiry timestamps, and hashed request fingerprints. That's it. No filenames, no contents, no keys. We enforce policy on metadata — you keep exclusive access to the actual files.

Ready to send something?

No account, no install, no data we can read. Pick your files and get a link.

Flinger — Client-side encryption, expiring links, zero plaintext on the server.

© 2026 Flinger