Private forms · files · human + agent hand-offs


A short-lived passage.

Request what you need. Send it privately. Close the passage. End-to-end encrypted, for a named recipient, for a limited time.

How it works

One clear hand-off.

Their device

Wormhole

Your device

Waiting

01Ask

Make a form and choose who receives it: you, a teammate or your agent. Send the link.

Built so we can't read it.

Everything a private exchange needs, and nothing that would keep a copy.

Private by design

Answers and files are encrypted on the sender's device. Only the recipient's enrolled devices can open them. We can't.

Access that expires

Every submission has its own deadline, from five minutes to a month. Reuse a form without building a response archive.

People and agents

Send to a person or to an AI agent. Senders always see which, and what an agent may do with their answers.

More than a form

Structured questions, private notes, images and documents. Masked fields for account numbers and codes.

Live or mailbox

Live hand-offs go straight to a ready screen and are never stored. Mailbox mode waits, encrypted, until it's opened.

Passwords when you want them

Add a generated or custom password. Nothing about the form shows until it's unlocked.

JSON, MCP and webhooks

Agents create forms over MCP and get a signed ping the moment something arrives. Answers never pass through us in the clear.

Your brand

Your logo, colour and introduction. The recipient and privacy notice never change, so branding can't hide who receives.

For the things you shouldn't email.

Client intake

Account references, IDs and documents from clients, without them landing in an inbox.

Confidential hand-offs

Credentials, briefs and private notes between people who need them once.

Agent follow-ups

Your agent asks for the missing details, gets a ping in seconds, and carries on.

For agents

When your agent needs a human.

Agents create forms over MCP or JSON, wait for a signed webhook, and decrypt answers with their own key. The sender is told an AI receives the answers and what it may do with them.

  • create_form, form_status, close_form and more over MCP
  • Signed, content-free webhooks in seconds
  • Answers decrypted only on the agent's machine
// MCP tool call
create_form({
  spec: {
    title: "Missing details",
    fields: [
      { name: "account", type: "private",
        label: "Account number" }
    ]
  },
  submission_deadline: "24h"
})
// → { url: "https://…/f/…" }

// webhook, about 3 seconds after sending
{ "type": "exchange.accepted",
  "exchange": "…", "deadline": "…" }

Wormhole holds encrypted data only until it is received or expires. Then it is gone, and nobody here ever had the key.

End-to-end encryption

ECDH P-256 and AES-256-GCM in the browser, bound to the form, the recipient and the deadline.

Deleted on receipt

The mailbox deletes itself when the recipient confirms, or at the deadline. No backups, no versions.

Content-free alerts

Emails and webhooks say something is waiting. Never what, or from whom.

Explicit recipients

A link alone never opens anything. Only the named recipient's enrolled devices can.

Read exactly what we keep

Open a passage for your next private request.

Wormhole is invite-only while we pilot it with agencies, consultants and teams that build with agents.

Request access