Data Minimization

Private File Sharing Without Accounts

Transfer files directly without registering an identity, uploading to a third-party server, or leaving a trail in remote databases.

Why Data Minimization Is the Best Privacy Guarantee

The safest way to protect private data is not to collect or store it in the first place. Most online file-sharing services collect email addresses, monitor file download counts, analyze file formats, and store files indefinitely on centralized storage clusters.

ShareOnline takes the opposite architectural approach: our servers do not store file payloads, require user logins, or maintain persistent accounts.

What ShareOnline Can and Cannot See

To understand the privacy model of ShareOnline, here is a transparent breakdown of what our systems process:

  • What We CANNOT See: Your file contents, documents, images, videos, and raw file bytes. WebRTC streams are encrypted end-to-end between your browser and the recipient browser via DTLS.
  • What We Process Temporarily: Session signaling metadata (such as 6-digit room codes, SDP offers/answers, and ICE candidate network endpoints) held in volatile memory to negotiate the connection. These tokens are discarded when the session ends.
  • What Is Processed for Network Protection: Client IP addresses extracted in memory to enforce rate limits and mitigate automated denial-of-service connection floods.

No Account or Identity Tracking

You do not need to provide your name, phone number, or email address. There are no tracking cookies, advertising tracking pixels, or cross-site user profiles. You open the website, share the file, and close the tab.

Ephemeral Sessions and Tab Isolation

Transfer rooms exist only while both devices are actively engaged in the exchange. Once the transfer completes or either browser tab is closed, the connection terminates. There are no persistent links for search engine crawlers to discover or third parties to stumble upon later.

Privacy Limitations to Keep in Mind

Because WebRTC connects devices directly, the two participating devices discover each other's network IP addresses during the ICE candidate exchange. If you require complete network-level IP anonymity from your recipient, use an encrypted VPN or privacy browser when initiating the session.