Private Rooms guide

Private Rooms are short-lived two-token exchanges, not permanent chat.

Private Rooms turn sensitive back-and-forth into a bounded product flow: two participants, ciphertext storage, plan limits, expiry, and standalone links that avoid loading the full app shell.

01

Invite rooms

An invite room creates a standalone link with private key material in the fragment. The recipient joins with a Shhhs token and the route is noindex/noarchive/no social preview.

  • Standalone /room route
  • Fragment invite material
  • Noindex

02

Direct token rooms

A direct room is created for another known Shhhs token. The room appears for both tokens without a manual invite fragment exchange.

  • Token-to-token
  • Two participants
  • No shared account

03

Plan limits

Private Rooms are paid-only. Pro, Team, and Enterprise have explicit active-room and message-per-room limits to keep the product bounded.

  • Pro limits
  • Team limits
  • Enterprise limits

04

Expiry and burn

Rooms expire according to plan and lifecycle state. Users should burn or close rooms when the sensitive exchange is complete.

  • Expiry
  • Burn/close
  • Scheduled cleanup

05

Safe use cases

Use rooms for client credential clarification, vendor onboarding, temporary access coordination, incident handoff, or agentic coordination. Do not use them as permanent chat history.

  • Client handoff
  • Temporary coordination
  • Agentic exchange

06

Marketing claim boundary

Public copy should say local/client-side encryption and metadata-only operations. Do not claim formal E2EE, deletion guarantees, or external certifications without evidence.

  • Client-side encryption
  • Metadata-only ops
  • No unsupported E2EE claim

FAQ

Can this guide include private links?

No. Public guides never include secret identifiers, room ids, full private URLs, fragments, filenames, or payload-derived text.

Is this a certification or audit?

No. It is product documentation for deployed boundaries. External audits, DPAs, SLAs, and certifications require separate evidence and review.

Does Shhhs recover secrets?

No. Shhhs support can help with billing and metadata-only support, but cannot decrypt or recover secret content.