๐ก๏ธ Privacy Policy
Your privacy is our priority. Learn how we protect your data and respect your privacy rights.
๐ Privacy at a Glance
Zero Knowledge
We cannot read your messages. They're encrypted before reaching our servers.
Auto-Delete
Messages are automatically destroyed after being read once.
No Registration
No personal information required to use our service.
Minimal Data
We collect only essential technical data for service operation.
๐ Contents
Information We Collect
OneTimeRead is designed to collect minimal information necessary for service operation:
๐ง Message Data
- Encrypted messages: Your messages are encrypted in your browser before transmission
- Message metadata: Creation timestamp, destruction status, and unique identifiers
- Access logs: Basic server logs for security and performance monitoring
โ๏ธ Technical Information
- IP addresses: Temporarily logged for security and abuse prevention
- Browser information: User agent string for compatibility purposes
- Usage statistics: Anonymous aggregated data about service usage
๐ Contact Information
- Support requests: Email address and message content when you contact us
- Feedback: Information you voluntarily provide through feedback forms
How We Use Your Information
We use the collected information solely for:
- Service delivery: Storing and delivering your encrypted messages
- Security: Preventing abuse, spam, and security threats
- Performance: Monitoring and improving service reliability
- Support: Responding to your questions and technical issues
- Legal compliance: Meeting legal obligations where required
Zero-Knowledge Architecture
OneTimeRead employs a zero-knowledge architecture:
Client-side Encryption
Messages are encrypted in your browser using AES-256
Key Separation
Encryption keys are never transmitted to our servers
No Plaintext Access
We cannot decrypt or read your messages
Automatic Destruction
Messages are permanently deleted after first access
Data Sharing and Disclosure
We do not sell, trade, or rent your personal information. We may disclose information only in these limited circumstances:
Legal Requirements
When required by law, court order, or regulatory authority
Security Threats
To protect against fraud, abuse, or security threats
Service Providers
With trusted third-party providers under confidentiality agreements
Business Transfer
In the event of a merger, acquisition, or asset sale
Data Retention
We maintain minimal data retention policies:
Messages
Destroyed immediately after first access
Unread Messages
Automatically deleted if not accessed
Server Logs
Retained for security and performance analysis
Support Communications
Retained for customer service purposes
Security Measures
We implement comprehensive security measures:
Encryption
All data encrypted in transit and at rest
Access Controls
Strict access controls and authentication requirements
Regular Audits
Security assessments and vulnerability testing
Incident Response
Established procedures for security incident handling
Your Rights and Choices
You have the following rights regarding your data:
Access
Request information about data we hold about you
Deletion
Request deletion of your data
Portability
Request export of your data
Rectification
Request correction of inaccurate data
To exercise these rights, contact us at privacy@onetimeread.com.
International Data Transfers
OneTimeRead may transfer data internationally with appropriate safeguards:
- Safeguards: All transfers protected by appropriate safeguards
- Adequacy decisions: Priority given to countries with adequate protection
- Standard contractual clauses: Used where appropriate for data protection
- Encryption: All data encrypted regardless of location
Children's Privacy
OneTimeRead is not intended for children under 13:
- No collection: We do not knowingly collect data from children under 13
- Parental notification: Parents should contact us if they become aware of underage use
- Immediate deletion: Any discovered underage data will be immediately deleted
Changes to This Policy
We may update this privacy policy with the following process:
- Notification: Users will be notified of significant changes
- Effective date: Changes become effective on the date posted
- Continued use: Continued use constitutes acceptance of changes
- Version history: Previous versions available upon request
Contact Information
For privacy-related questions or concerns:
๐ Our Commitment to Privacy
GDPR Compliant
Full compliance with European data protection regulations
End-to-End Encrypted
Messages encrypted with military-grade AES-256 encryption
Zero Knowledge
We cannot access your messages even if we wanted to
Self-Destructing
Messages automatically deleted after single access