onetimesecret.com
Paid content
Multilingual
Categories: Productivity
Share sensitive information securely with self-destructing links. Paste your secret, generate a link, and share it. Once viewed, it's gone forever
Related questions
More questions →What is onetimesecret.com?
Does onetimesecret.com offer paid content?
What languages does onetimesecret.com support?
How can I visit onetimesecret.com?
What are some alternatives to onetimesecret.com?
Website Overview
Limited stack disclosure and few obvious backend markers suggest a more restrained public footprint. That reduces easy fingerprinting clues but is not proof of overall security. An established domain and managed infrastructure suggest continuity of operations and may support dependable delivery, although neither guarantees service quality.
Domain and Registration
Registered in 2011, this domain has about 15 years of history. That suggests continuity, although ownership and purpose may have changed. Transfer-protection status is present, helping reduce the risk of unauthorized domain transfers. The registrar is Porkbun LLC, a widely used domain service provider. The domain uses the common .com extension, which is not an independent safety signal.
DNS and Email
Nameservers are provided by bunny.net, indicating managed DNS hosting. MX records point to the Proton Mail email service. DNSSEC is enabled, allowing validating resolvers to authenticate signed DNS data. CAA records restrict which certificate authorities are authorized to issue certificates. No CNAME was found; the observed records resolve directly to addresses.
TLS and Certificates
The certificate uses an RSA 2048-bit public key, offering broad client compatibility. The server supplied a complete certificate chain. No organization name is present in the certificate; the available fields are consistent with domain validation. The certificate was issued by Let's Encrypt, commonly associated with automated certificate services. The certificate's total validity is about 89 days, consistent with a short renewal cycle.
HTTP and Browser Security
The response lacks these common security headers: CSP, X-Content-Type-Options, Referrer-Policy, Permissions-Policy, clickjacking protection. No X-Powered-By header was found, reducing one common source of backend fingerprinting information. No obvious internal addresses or debug information were found in the headers. The Server header contains the custom value BunnyCDN-ASB1-1504. No explicit CDN or WAF marker was found in the response headers.
Technology Stack Analysis
No obvious technology stack is exposed. This may reflect restrained information disclosure, although the underlying technologies remain unknown.
Search and Social Sharing
Twitter Card metadata is configured. JSON-LD includes Organization data, helping describe the organization as an entity. The page declares 5 language or regional alternatives using hreflang. The title has 63 characters, within a common display range. A meta description is present, with 146 characters.
Hosting and Email
Pages, Search and Sharing
| Meta description | Share sensitive information securely with self-destructing links. Paste your secret, generate a link, and share it. Once viewed, it's gone forever |
|---|---|
| Canonical URL | https://onetimesecret.com/ |
| Language | English (default) · Multilingual |
| Twitter Card | summary_large_image |
Social Sharing Preview
10 fieldsrobots.txt (opens in a new tab)
27 rulesAll bots 7 allowed · 14 disallowed
/about/features/pricing/feedback/info//translations//private//secret//receipt//account//dashboard/admin/shared/recent//forgot//domains//signin/signup/logout/incoming- Interval
Crawl delay 1 seconds
puppeteer 1 allowed · 0 disallowed
/
gptbot 1 allowed · 0 disallowed
/
chatgpt-user 1 allowed · 0 disallowed
/
google-extended 1 allowed · 0 disallowed
/
ccbot 1 allowed · 0 disallowed
/
claude-web 1 allowed · 0 disallowed
/
No matching rules.
Sitemaps
1
Registration details RDAP / WHOIS
| Registrar | Porkbun LLC |
|---|---|
| Registered | 2011-06-16 |
| Expires | 2031-06-16 |
| Domain status | client delete prohibited、client transfer prohibited |
| Nameservers | coco.bunny.net、kiki.bunny.net |
| DNSSEC | signed |
DNS records
| Type | Name | Value | TTL | Priority |
|---|---|---|---|---|
| A | onetimesecret.com | 152.233.50.2 | 300 | — |
| AAAA | onetimesecret.com | 2a02:6ea0:e237::1504:1 | 300 | — |
| MX | onetimesecret.com | mail.protonmail.ch | 86400 | 10 |
| MX | onetimesecret.com | mailsec.protonmail.ch | 86400 | 20 |
| NS | onetimesecret.com | coco.bunny.net | 172800 | — |
| NS | onetimesecret.com | kiki.bunny.net | 172800 | — |
| TXT | onetimesecret.com | google-site-verification=rf5MIkBoe4IQ_GmZH-qer8wM7rIdjhBMDvqYh0uKnR8 | 3600 | — |
| TXT | onetimesecret.com | google-site-verification=sgqtWy6Bv6zeQM7G7U_pj6bcxPSzFRrcGFwaibGA_Go | 3600 | — |
| TXT | onetimesecret.com | postman-domain-verification=39517c2d4d2da6fc7b4bf72ded84a1cc0d6d41aefa7e47266250c6864a667091d123dceb18cf12d046dcbd0c2e2ef69ae6a7a60b798a22f545e7fda7753922f7 | 900 | — |
| TXT | onetimesecret.com | protonmail-verification=0745c38ad38819619ee67ca0508365555d3306db | 86400 | — |
| TXT | onetimesecret.com | v=spf1 a mx include:_spf.protonmail.ch include:amazonses.com ~all | 7200 | — |
| CAA | onetimesecret.com | 0 issue "digicert.com" | 900 | — |
| CAA | onetimesecret.com | 0 issue "letsencrypt.org" | 900 | — |
| CAA | onetimesecret.com | 0 issue "pki.goog" | 900 | — |
| CAA | onetimesecret.com | 0 issue "sectigo.com" | 900 | — |
| CAA | onetimesecret.com | 0 issuewild "letsencrypt.org" | 900 | — |
| CAA | onetimesecret.com | 128 iodef "mailto:[email protected]" | 900 | — |
| DS | onetimesecret.com | 2371 13 2 5967514305e25931ed916ea45586ef27d58a4c1634ee1b97a0a5cc757b9c2906 | 86400 | — |
| DS | onetimesecret.com | 58142 13 2 71eed463a9bd6e2e6f5a31e530707d110493d06011de1fe258ea2649cadc9be9 | 86400 | — |
| DMARC | _dmarc.onetimesecret.com | v=DMARC1; p=reject; sp=reject; pct=100; adkim=r; aspf=r; rua=mailto:[email protected]; ruf=mailto:[email protected]; | 7200 | — |
TLS and certificates
| Assessment | Normal configuration |
|---|---|
| Supported protocols | TLSv1.2、TLSv1.3 |
| Negotiated protocol | TLSv1.3 |
| Certificate subject | onetimesecret.com |
| Issuer | Let's Encrypt |
| Valid until | 2026-12-08T19:03 · Remaining when checked: 73 days |
| Verification details | Certificate trust: Passed · Hostname match: Passed |
HTTP response headers
| Header | Value |
|---|---|
| content-type | text/html |
| cache-control | public, max-age=259200 |
| server | BunnyCDN-ASB1-1504 |
| strict-transport-security | max-age=63072000; includeSubDomains; preload |
Identified technologies
Technology stack: Unknown
Recent Updates
- Website images
- Screenshots
- Network details
- Website Technologies
- Pages and Search Information
- HTTP Response Information
- TLS and certificates
- DNS Information
- Domain Registration
- Website profile
- Website Description
- Website Name
- Website profile
- Website Description
- Website Name
User reviews (0)