1tyme is a secure workspace for sharing secrets, passwords, and files that self-destruct after they're read — with every project's access explicitly approved, never assumed. This quick guide walks you through the full flow, from signing in to sharing your first secret.
Open the app and authenticate with your organization's single sign-on (Azure AD, SAML, or Keycloak), or local credentials if enabled. Your session is protected and times out automatically when idle, with a warning before it expires.
New here? You won't see any project's data until an admin approves you. On your first sign-in:
Everything lives in the left-hand sidebar: Share, Messages, Keys, Password Vault, Notes, and Settings. If you belong to more than one project, switch between them from your Profile — each project's data stays completely separate.
Go to the Share tab and create a one-time secure link:
Open Messages → Inbox for secrets shared with you, or Sent to track what you've shared. Hover over any row to reveal quick actions — View details in your inbox, or Copy link / Burn (destroy immediately) for sent items. Each secret can be viewed a limited number of times before it auto-destructs.
Beyond sharing, 1tyme includes a password generator, SSH/API key generator, a personal vault, secure notes, and certificate tracking — all in one place.
No user sees any project's data until an admin approves them.
User authenticates via SSO. No project membership yet.
Picks a project from a list. Optional note to the approver.
Project admin or super admin sees the pending request.
Added as Member or Admin. Every grant is audit-logged.
Enter secret + file. Set expiry & max views. Restrict to users/groups.
ClamAV malware detection. Phishing URL analysis. Suspicious content check.
AES-256-GCM encryption. Stored in Redis with TTL. Metadata in PostgreSQL.
Recipient gets secure link. Teams / Email notification. Auto-destroyed after use.
Create one-time secure links for secrets and files with expiry & view limits.
Track secrets shared with you (Inbox) and ones you've sent (Sent).
Create strong passwords, SSH keypairs, and API keys instantly.
Store and organise credentials securely in folders.
Keep encrypted notes and attachments private to you.
Track certificate expiry dates so renewals never sneak up on you.
Profile, appearance (theme & text size), security, and project settings — all in one place.
Every project grant is requested, reviewed, and approved by an admin — with a full audit trail.
Everything is encrypted with AES-256 using a zero-knowledge approach, secrets automatically self-destruct after expiry or once their view limit is reached, and no one sees a project's data until an admin explicitly approves them.