Last updated: August 2026
Textunnel was engineered from inception with privacy as a foundational constraint. We do not store your files on any cloud servers, we do not monitor or log your clipboard contents, and we do not require account registration or passwords. All file transfers occur directly peer-to-peer (P2P) between your devices over encrypted WebRTC DataChannels.
Textunnel operates strictly as a client-side peer-to-peer utility. When transferring files, photos, 4K videos, or clipboard text between devices on the same local network (Wi-Fi/LAN) or across the internet, payloads stream directly from device A to device B via WebRTC DataChannels.
Your payload data never touches our disks or database systems. It moves directly through ephemeral memory buffers allocated in your device's web browser.
All communications between connected peers are encrypted end-to-end by default using Datagram Transport Layer Security (DTLS 1.2 / DTLS 1.3) and AES-GCM cipher suites.
Cryptographic keys are generated locally within the web browser sandbox of the sender and receiver. Neither Textunnel maintainers nor any intermediate network provider can inspect, decrypt, or tamper with the contents of your transfer.
We operate no cloud file hosting infrastructure, no user file caches, and no historical paste archives. The moment you close the browser tab or terminate a transfer session, all session tokens, ephemeral room identifiers, and in-flight memory buffers are instantly purged from memory.
To establish initial WebRTC peer connections (the initial handshake), a lightweight signaling server facilitates the exchange of session metadata (specifically Session Description Protocol / SDP packets and ICE connection candidates).
This signaling exchange is strictly ephemeral and carries only routing parameters. The signaling server never receives, parses, or processes the actual file binary or clipboard payload.
We partner with third-party advertising companies, including Google AdSense, to display non-intrusive advertisements that fund our free open-source infrastructure. These advertising partners may use cookies and web beacons to collect non-personally identifiable information:
Under the General Data Protection Regulation (GDPR) and California Consumer Privacy Act (CCPA), users are entitled to know what personal data is collected and processed. Because Textunnel enforces a zero-account architecture and retains zero user profiles, email lists, or IP access logs, we hold no personal data to disclose, sell, or modify.
If you have questions, feedback, or security inquiries regarding this Privacy Policy, please contact our team at hello@textunnel.com or visit our Contact Page.
No. Textunnel utilizes pure WebRTC DataChannels where files stream in transient memory buffers directly between devices. Zero bytes are ever stored or cached on remote hard drives.
No. All text payloads are encrypted end-to-end using DTLS 1.3 before leaving your browser. Only the paired device possessing the matching ephemeral cryptographic key can decrypt the data.
Under GDPR and CCPA, Textunnel maintains zero user accounts, personal profile databases, or tracking logs. Because we collect and hold no personal identity data, there is zero risk of personal data leakage.
You can manage or opt out of personalized Google advertising anytime via Google My Ad Center (https://myadcenter.google.com/) or the Digital Advertising Alliance choices portal.