OneTimeSecretLink
Please follow this procedure for using a one-time link to send a secret in a secure way.
This could be a password, passphrase, access token, API key etc.
- Open a conversation with your correspondent so you know the right person is available and they know what to expect.
- Generate a new secret with the relevant application, but do not activate it.
- Copy the unique link created above or the boiler-plate text and paste it into a message to your correspondent.
Ensure the messaging application does not alter the link with a spell-checker etc. then send it. - Wait for your correspondent to confirm if they have succesfully saved the secret.
- If they say the link was already used, then follow the REVOKE process for the relevant application, and repeat the process.
- When the secret has been succesfully received, activate the secret in the relevant application.
- Let your correspondent know that the secret is now ready for them to use with the relevant application.