Send Shed
Blog

Is Pixeldrain private? What actually happens to your files

Updated September 2026

Pixeldrain is a genuinely solid file host -- we said so in our own feature-by-feature comparison. But "solid" and "private" aren't the same claim, and it's worth being specific about what Pixeldrain's own documentation actually says happens to a file once you upload it, rather than assuming "not public" means "private."

Links aren't indexed anymore -- but that's a fix, not a design

Pixeldrain's own Q&A page is candid about this: files used to be picked up by search engines when a link was indexed, and people "often accidentally got files indexed which were not supposed to be public." Indexing is now disabled site-wide to stop that from happening again. That's a reasonable fix, but it tells you the underlying model: a Pixeldrain link is a long random ID standing between a file and anyone who has it, not a file with encryption or access control behind it. Anyone who gets hold of the link -- via a forum post, a forwarded message, a leaked chat log, a misconfigured crawler -- can open it. There's no password, no per-recipient control, and nothing to revoke beyond deleting the file outright.

"Expiry" means inactivity, not a timer you set

There's no upload-time control over when a Pixeldrain file disappears. Per its docs, a free file is removed once it "has not been accessed for 60 days," and that clock resets itself every time someone downloads more than 10% of it (at most once every 24 hours). That's useful as a cleanup mechanism for abandoned files, but it's the opposite of what you want for something sensitive: a file everyone keeps opening is a file that keeps renewing itself indefinitely, and there's no way to say "let this die after 3 downloads" or "kill this in an hour" up front.

No encryption is mentioned anywhere

We looked through Pixeldrain's own documentation specifically for this: nothing on the Q&A page or the content policy describes encrypting stored files, at rest or otherwise. Combined with automated content scanning (Pixeldrain scans uploads against known child-abuse-material hashes, which is a good and standard practice, not a criticism) that implies the platform itself can read what you upload. That's normal for a public file host built around hotlinking and sharing -- it's just worth knowing plainly rather than assuming "not public" means "not readable by the operator" too.

Where this leaves you

If a file is meant to be public and permanent -- something you want embedded in a forum post or linked from a wiki for a long time -- Pixeldrain's model is a fine, even generous, fit for that. If a file is meant for one specific person and nobody else, three things change the risk profile: a link that expires on a timer you set instead of an inactivity clock, a download limit that takes the link down after it's been used, and encryption where the operator never held a readable copy in the first place.

That's the shape of Send Shed's Encrypted Share: files are encrypted with AES-256-GCM in your browser before upload, using a key that's never sent to the server, with expiry from 1 hour up to 30 days and an optional download-count limit you set yourself -- not one that resets on its own. See our zero-knowledge encryption explainer for the full mechanics.

Send something that's actually private

A link that expires on your terms, encrypted before it leaves your browser.

Try Encrypted Share Read the full Pixeldrain comparison