Links and access
Every file and note has its own link. You decide who opens it and for how long: access, password, one-time opening, expiry and a view limit.
Access
| visibility | Who sees it |
|---|---|
private | Only you. |
unlisted | Anyone who has the link. |
public | Anyone with the link, plus the feed and your profile. Not with oneTime. |
Without visibility on upload, the account setting applies: private or unlisted.
Password and one-time link
password: 8–128 characters. Stored as Argon2id and never returned; an empty string removes it, and changing it revokes viewers who already opened the file.oneTime: only the first guest opens the file, for 10 minutes. Your own view and messenger link previews don’t use it up.
Expiry and view limit
ttl:day,week,monthorforever, from the request. After it, the link stops opening and the file is deleted.expiresAt: an exact end, 5 minutes to 10 years ahead. Pro featurelink_expiry.viewLimit: after this many views the link answers like an expired one. Pro featureview_limit; removing a limit (null) works on any plan.
Without the plan feature the answer is 403 PLAN_FEATURE_REQUIRED with params.feature. The account’s features are in entitlements.features of GET /account. Expiry and limits already set keep working after a plan ends.
Views
views counts guests opening the file’s page, at most once a day per viewer; your own views and link-preview bots are not counted. Views by day are the Pro feature view_stats.