Send a file only they can open
Email exposes your files on servers you don’t control. Armadoc encrypts yours in the browser and expires the link automatically. Your recipient just verifies with a one-time code, no account required.
Send your first documentEmail was never built for sensitive files
An attachment is copied across every mail server between you and the recipient, then sits in inboxes indefinitely — readable by anyone who gains access, forwardable to anyone, with no way to expire it or verify who opens it.
Stored in the clear
Attachments rest unencrypted on mail servers you’ll never see or control — and on every one they pass through.
They never expire
Once sent, a copy lives in every inbox and backup forever. You can’t take it back or make it disappear.
Anyone can forward it
Nothing verifies who actually opens the file, and nothing stops it from being passed on to someone you never intended.
Built for people who handle private things every day
The big tools are built to store your files, not send one
Drop a document into a cloud drive and a permanent copy sits there for the provider to read; share it the ‘secure’ way and your recipient gets pulled into an account they never asked for. So most people give up and email it anyway. Armadoc is built for the opposite job — sending one file to one verified person, encrypted so even we can’t read it, then gone when the link expires.
We made the option that should have always existed
The sender uploads. The recipient verifies their identity with a code. The file decrypts in their browser. The link expires. That’s the entire system.
No accounts. No platform lock-in. No leftover copies sitting on a server somewhere. Just the file, between the two people who need it, for as long as it needs to exist.
No signup for recipients
They click your link, verify with email or phone, and view the file. No app to install, no password to invent.
End-to-end encrypted
Files are encrypted on your device and stay encrypted in storage and transit. Even we can’t read what you send.
Self-destructing links
Links expire automatically — pick a window from 1 to 30 days. After that, the file is gone. Really gone.
Six clicks from your file to their screen
Click any step to preview what each side sees. The sender does the work; the recipient just receives.
Drop in your file
Up to 15 documents per send. PDFs, spreadsheets, docs, and images.
Add the recipient
Email or phone — that’s how they prove it’s really them later.
Set how long it lives
From 1 to 30 days, then the link and the file disappear automatically.
Send the secure link
We generate a unique URL that works exactly once, for exactly that person.
They verify their identity
A 6-digit code lands in their email or phone. No account, no password.
You get notified when they open it
Real-time read receipts on the Pro plan, so you’re never wondering.
Up to 15 files per send. PDF, XLS, DOC, JPG, PNG, HEIC.
They’ll receive a verification code at this address.
After expiry, the file is permanently deleted. We can’t recover it. Neither can anyone else.
Sent to alex@cpafirm.com. This proves the recipient is who they claim to be — every time.
Privacy isn’t a feature. It’s the whole point.
Every choice we made — from key generation to deletion — exists to keep your file between you and the person you sent it to. Nothing more.
End-to-end encryption
Files are encrypted in your browser before they ever leave your device. The decryption key never touches our servers.
Verified recipients only
Every viewer proves their identity with a one-time code sent to email or phone. No code, no access. Period.
Automatic deletion
When the link expires, the file is purged from our storage. No grace period, no archive, no copies.
Zero admin access
We literally can’t see what you send. Not our engineers, not our support team, not a court order. The math is on your side.
Free for personal use. Affordable for your business.
Start free, upgrade only when your sending volume actually demands it. No tiers designed to trap you.
Free
For occasional, personal sends
- 5 secure sends per month
- 1 file per send
- Up to 10 MB per file
- 10-day automatic expiry
- End-to-end encryption
- PDF, XLS, DOC, JPG, PNG, HEIC
Pro
For freelancers, small teams & power senders
- 25 secure sends per month
- Up to 15 files per send
- Up to 25 MB per file
- Custom expiry from 1 to 30 days
- Read-receipt notifications
- Everything in Free
People who handle other people’s private stuff
Anywhere a sensitive file changes hands, Armadoc fits in without making either side learn something new.
Freelancers
- Send signed contracts to clients
- Share invoices and receipts privately
- Deliver final assets without Dropbox links
Accountants & bookkeepers
- Request and receive tax documents
- Send returns to clients securely
- Exchange financial statements
Small businesses
- Share employment paperwork
- Send NDAs and term sheets
- Move sensitive vendor docs
Healthcare & legal
- Share records with verified parties
- Deliver case files with audit trails
- Avoid email-based PHI exposure
Real estate
- Send disclosures and inspections
- Share buyer financials privately
- Move closing docs without portals
Anyone, really
- Send your passport scan to family
- Share medical records with a parent
- Move files when email feels wrong
Send your first secure document in under a minute
No account. No credit card. No learning curve. Just a file, a link, and a little less worry.
Get started — it’s freeThe things people ask before they sign up
Is email safe for sending sensitive documents?
No. Email attachments are stored unencrypted on every mail server between sender and recipient, sit in inboxes indefinitely, and can be forwarded to anyone — with no way to verify who opens them or to make them expire. Armadoc encrypts files in your browser, verifies every recipient with a one-time code, and deletes them automatically when the link expires. There’s a point-by-point version of this answer on Armadoc vs. email attachments.
I already password-protect my PDFs — isn’t that enough?
It helps, but the weak link is the password itself: you still have to get it to your recipient somehow — usually in the same email or a text, sitting right next to the file it unlocks. It’s also only as strong as the password you choose, and there’s still no way to verify who opens the file, no expiry, and no automatic deletion. Armadoc encrypts the file in your browser, delivers the key only to a recipient verified with a one-time code, and deletes it when the link expires.
Isn’t this basically Dropbox (or Google Drive)?
They’re great at what they’re for: a shared library you and your collaborators come back to day after day. Armadoc is for the other situation, the one where you need to hand one file to one person and then have it gone. A cloud drive keeps a copy for as long as you both remember it exists, the provider can read it, and ‘sharing securely’ tends to drag your recipient into an account. Armadoc encrypts the file in your browser (so we genuinely can’t read it), opens it only for a recipient who verifies with a one-time code, and deletes it when the link expires, leaving nothing to revoke and nothing behind. If you’ll keep working in the file together, use a drive. If you’re handing it over once, use Armadoc.
Does the recipient really not need an account?
Correct. They click the link, request a one-time code (sent to the email or phone you used to address them), enter the code, and the file decrypts in their browser. No app to install, no password to invent, no signup form to fill out.
What does “end-to-end encrypted” actually mean here?
Your file is encrypted in your browser before it’s uploaded. The decryption key is shared only via the secure link to the verified recipient. We store the encrypted blob — but we can’t open it. Nobody at Armadoc, including engineers and admins, can see the contents of what you send.
What happens if Armadoc is hacked or subpoenaed?
There’s nothing useful to take. Files are encrypted in your browser before they reach us, and we never hold the keys — so whether someone breaches our storage or serves us a legal demand, all that exists on our side is an encrypted blob we can’t open. We can’t hand over what we can’t read.
Are file names and descriptions encrypted too?
The file contents are end-to-end encrypted — we can’t read them. The file name isn’t, and the description isn’t either, because we include them in the recipient’s notification email so the delivery looks genuine and isn’t mistaken for spam or phishing. The description is completely optional — leave it blank if you prefer. The file name is always sent, so if the name itself is sensitive, rename the file before sending it.
Can I use Armadoc on more than one device or browser?
Yes, with one catch. Each browser creates its own key and keeps it there, never on our servers, which is precisely why we can’t read your files. Adding a device enrolls another key alongside the ones you already have — nothing is replaced. Anything sent to you after that opens on either one. Anything sent before it won’t open on the new device, because the sender sealed it to the keys you had at the time; it stays readable on the device you were using then. The same applies to your recipients. Clearing site data or using a private/incognito window discards that browser’s key, which leaves you in the same position as a new device. Your dashboard lists every key on your account, so you can name them as you add them and revoke any you no longer use.
What if I lose my device or my keys?
Your private key is stored only on your device and is never sent to us — so even we can’t recover it. If you sign in somewhere new, or your key is gone because you cleared site data, Armadoc lets you add a fresh key for that browser. You keep your account, and your other keys are untouched: files already sent to them stay readable wherever those keys still are. What the new key can’t do is open anything sent before it existed, so you’ll see a reminder to ask the sender to share those again. The key on the device you lost stays enrolled until you revoke it from your dashboard, and until you do, senders keep sealing new files to it. Revoking only affects future sends — anything already sealed to that key is untouched. (Opening files in a private/incognito window has the same effect — the key is discarded when you close it — so Armadoc warns you before you rely on it.)
How long do files stay available before they’re deleted?
On the Free plan, files are automatically deleted 10 days after they’re sent. On Pro, the sender picks the window — anywhere from 1 to 30 days. Once it’s up, the file is gone for good (more below).
What happens after the link expires?
The encrypted file is permanently deleted from our storage. There is no archive, no recoverable copy, no “trash” folder. If you need to send it again, you upload it again.
Why “5 sends a month” on Free?
Because the Free plan is built for the person who needs to share something private a few times a year — not as a watered-down demo. If you’re sending more than that, you’re probably running a small business or freelance practice, and Pro is built for you.
What file types are supported?
PDF, XLS, DOC, JPG, PNG, and HEIC. These cover roughly 99% of the documents people actually need to share privately. More formats are on the roadmap.
Is there a file size limit?
Yes. On the Free plan each file can be up to 10 MB; on Pro the limit is 25 MB per file. If a file is larger than your plan allows, Armadoc tells you before the send goes through.
Can I see if (and when) the recipient opened the file?
On the Pro plan, yes. You get a notification the moment the file is decrypted and viewed, including a timestamp. The Free plan doesn’t include read receipts.
The code or notification email hasn’t arrived — where is it?
Give it a minute, then check your spam or junk folder — that’s the first place to look. Armadoc sends from a brand-new domain, and some mail systems are extra cautious with senders they haven’t seen before. This settles down as the domain builds a track record.
On a personal inbox (Gmail, Outlook.com, iCloud, Yahoo): if you find it in spam, mark it “not spam” and future messages will land in the inbox.
On a work, company, or school account (the kind an IT team manages): the organization’s filter can hold the message before it reaches you, so it may not appear in junk either. Ask your IT team to allow mail from armadoc.link, or receive it at a personal email address instead.
Is Armadoc a good fit for HIPAA, GDPR, or other compliance regimes?
Not yet — Armadoc isn’t formally certified for HIPAA or similar, and we don’t currently sign BAAs. That said, the architecture (end-to-end encryption, verified recipients, automatic deletion, no admin access) reflects the same principles those frameworks care about around data minimization and access control. If formal compliance is a hard requirement for your team, get in touch and tell us what you need.