{% extends "app.html" %} {% block body_class %}{{ block.super }} page-send-view{% endblock %} {% block extra_head %} {{ block.super }} {% endblock %} {% block content %} {% if is_owner %}

Sent by you {% if pod.recipient %} to {{ pod.recipient.username }}{% else %} (anonymous recipient){% endif %}

{% if pod.deadline %}
Expires
{% endif %} {% if pod.self_destruct %}
This pod is set to self-destruct after the recipient decrypts it.
{% endif %} {% if pod.status == "pending" %}
Waiting to be decrypted
{% if is_anon %}

Share this URL with the recipient, and send their access code or key file separately:

{{ request.scheme }}://{{ request.get_host }}{% url 'send_view' hash=pod.hash %}
{% endif %} {% elif pod.status == "read" %}
The recipient has decrypted the secret.
{% elif pod.status == "locked" %}
Too many failed access attempts - the pod is locked.
{% elif pod.status == "destroyed" %}
This pod has been destroyed and its secret is gone.
{% endif %}
{% if pod.status == "pending" and is_anon %} {% elif pod.status == "locked" %}
{% csrf_token %}
{% endif %}
{% csrf_token %}
{% if pod.status == "pending" and is_anon and allow_server_keys and not has_server_key %}

Store key on server - let the recipient unlock it with an access code instead of the key file. Upload the key file you downloaded when creating this pod. Weakens security if the server database is compromised.

{% endif %} {% include "_pod_logs.html" %} {% elif pod.status == "locked" %}
Pod locked - too many failed access attempts. Ask the sender to unlock it before trying again.
{% elif pod.status == "destroyed" %}
This pod has been destroyed and its secret is gone.
{% elif pod.can_access %} {# Renders nothing visible, but ensures Django sets the csrftoken cookie for #} {# this anonymous recipient so the fetch() calls below can send it back. #} {% csrf_token %} {% if pod.self_destruct %}
This secret will self-destruct after you decrypt it. Save it before closing this page.
{% endif %} {% if pod.deadline %}
Available until
{% endif %}
This secret was encrypted in the sender's browser. Only you can decrypt it.
{# Anonymous recipient with server-stored key #} {% if is_anon and has_server_key %}

{% endif %} {# Anonymous recipient with no server key - import private key #} {% if is_anon and not has_server_key %}

Enter the private key file the sender sent you:

{% endif %} {# Authenticated recipient - retrieve identity key #} {% if is_recipient %}

Retrieving your identity key…

{% endif %} {# Encrypted data carriers (always present for recipients on accessible pods) #} {% if encrypted_secret_json %} {{ encrypted_secret_json|json_script:"encrypted-secret-data" }} {% endif %} {% if encrypted_filename_json %} {{ encrypted_filename_json|json_script:"encrypted-filename-data" }} {% endif %} {% if read_challenge_json %} {{ read_challenge_json|json_script:"read-challenge-data" }} {% endif %} {% else %}
This pod has expired or been destroyed.
{% endif %} {% endblock %}