End-to-end encrypted · Opens once

Send secrets that destroy themselves.

Credentials, keys and private notes, encrypted in your browser and delivered by email or link. Read once, then gone, everywhere.

Expires
Passphrase

Encrypted with AES-256 in your browser before anything is sent.

Sign in to email secure links directly, track and withdraw messages, and start encrypted threads.

How it works
01

Write & encrypt

The message is encrypted with AES-256 on your device. The key never reaches our servers.

02

Send it like mail

We email the secure link for you, or you share it yourself. For credentials, add a passphrase over a second channel.

03

Opened once, then gone

The first open destroys the server copy. Unopened messages are destroyed at expiry. Threads expire 30 days after the last reply.

Zero knowledge

What we can never read

Tockermail is built so that trusting us is unnecessary. Not a promise, a property of the design.

  • Your message, names, subject and files are encrypted on your device before anything is uploaded.
  • The decryption key rides after the # in the link. Browsers never send that part to any server, including ours.
  • Emailing a link passes the key through our server once, in memory only, and never stored — add a passphrase for zero-trust delivery.
  • When a message is opened or expires, the ciphertext is deleted. Not archived. Deleted.