Self-destructing secrets
Each secret is encrypted with AES-256-GCM under its own random key, and that key is wrapped by a key held on our servers. When the last view is used, the ciphertext is deleted in the same step, and the link can never open it again.
Links look like k7mq-2vx-r9t: ten characters, grouped so they can be read out over the phone and typed on another machine without mistakes.
