Skip to content
Alexandru JungeanOne Time SecretOther tools

One Time Secret - Tool - by Alexandru Jungean

Acceptable Use Policy

Română

What you may not store or do with the service, and how reports are handled when we cannot read plaintext.

Version 1.1.0 · Effective 22 August 2026

This Acceptable Use Policy (“AUP”) is part of the Terms of Use for One Time Secret - Tool - by Alexandru Jungean at https://secret.alexjungean.com. A breach of this AUP is a breach of the Terms. The Romanian text is at Politică de utilizare acceptabilă.

The Operator cannot read plaintext and does not generally monitor envelopes. That is not permission to host illegal content. You are solely responsible for what you encrypt and for whom you give the capability link.

1. Intended use

You may use the Service to send a short text secret (passwords, one-time codes, recovery phrases you are entitled to share, private notes) to a person you choose, once, with a short expiry. You must have the legal right to that text and to disclose it to the recipient.

2. Prohibited content

You must not create or reveal a secret whose plaintext, or whose reasonably intended use, includes any of the following:

  • Child sexual abuse material or any sexual content involving a person under 18, or under 21 where a stricter law applies to you.
  • Terrorist content, instructions for violent crime, or content whose dissemination is a criminal offence in the European Union or in Romania.
  • Malware, exploit payloads, ransomware keys used in an attack, or material designed to compromise systems you do not own and are not authorized to test.
  • Phishing kits, credential dumps, or material used to defraud.
  • Non-consensual intimate images, doxxing packages intended to facilitate stalking or harassment, or threats.
  • Content that infringes copyright, trade secrets, or other third-party rights in a way that is unlawful.
  • Anything else that is illegal to host, transmit, or possess in Romania, in the European Union, or in the place where you or the intended recipient act.

3. Prohibited conduct

  • Attacking, scanning, or overloading the Service; bypassing rate limits; opening unbounded create or reveal loops.
  • Automated harvesting of public identifiers or capability links.
  • Putting lookup proofs or AES keys in query strings, referrers, or any logged channel after we have documented that those values must stay in the fragment.
  • Impersonating the Operator or presenting this site as another product.
  • Using the Service to store bulk data, to operate a command-and-control channel, or as a long-term archive (maximum lifetime is 7 days and one reveal).
  • Interfering with another person’s Reveal, except you may revoke a link you created by revealing it yourself before the recipient does, accepting that this consumes the only copy.

4. What we can do without reading plaintext

If a notice or order identifies a public identifier, and the row still exists, we can delete it. We can apply rate limits, reject cross-site browser posts, and fail closed when abuse controls are saturated. We cannot search envelopes by keyword. We cannot confirm what plaintext said.

We may report credible evidence of serious crime to competent authorities. We may preserve a row only if it still exists and a lawful preservation duty applies; the default design deletes on reveal or expiry.

5. How to report

Use the Illegal Content Notices process for alleged illegal hosted content. For security issues use the Vulnerability Disclosure Policy. For everything else: alex.jungean@gmail.com. Include a public identifier if you have one. Do not send plaintext, proofs, or AES keys.

6. No general monitoring

Under Article 8 of the Digital Services Act, the Operator is not required to monitor information that users transmit or store, or to seek facts indicating illegal activity. This AUP does not create such a duty. It allocates responsibility to the person who encrypts and shares the link.

All legal documents