App
NDAZ
NDAZ is a template for two people who want a short, one-page NDA on their phones. They connect with a QR code or a pasted code, both sign, and export a PDF with a fingerprint (a hash) on it.
There is no account, and no NDAZ server that holds the agreement or the keys.
Try this first: one person starts the session, the other scans the QR code or pastes the code, and both sign.
Under the hood
The phones talk to each other directly. The link is WebRTC, and there is no signaling server. Public STUN helps them find a path. When the network needs a relay, a TURN server carries the traffic, and that relay only ever sees encrypted data.
Encryption stays in the browser. Each phone makes an ECDH P-256 key pair. HKDF turns the shared secret into an AES-256-GCM key, and the agreement is encrypted before it crosses the link. The fingerprint on the PDF is a SHA-256 hash of the agreement.
A signed copy can stay on the phone in an IndexedDB vault. You unlock it with biometrics or a passphrase. Burn after reading wipes that record.
A VPN or a strict network can block the connection. If a QR code is too big to scan, paste the code instead.