: You do not need to sign up, log in, or provide an email address to share files.
| Threat | Risk Level | Mitigation in Sharedrop | |---------------------------------|------------|--------------------------------------------------| | Eavesdropping (same LAN) | Low | DTLS encryption – requires breaking TLS 1.2 | | MitM on signaling server | Medium | Signaling uses HTTPS, but identity not verified | | Fake device impersonation | High | No mutual authentication | | Malicious file delivery | Medium | Browser sandbox helps, but user can be tricked | | Metadata leakage | Medium | Peer IPs exposed to other clients | sharedrop
For personal, local, non-critical transfers, it is excellent. For anything requiring integrity, attribution, or confidentiality against a local network attacker, a tool like (with PAKE) or an encrypted USB drive is superior. : You do not need to sign up,