Open-source artifact sharing for AI agents: private, branded, zero-knowledge links.
io.github.maxtechera/hushdrop MCP Server
This MCP server, io.github.maxtechera/hushdrop, supports open-source artifact sharing for AI agents. It enables private, branded sharing of files, HTML pages, or whole sites via password-protected (zero-knowledge AES-256) links served on your own domain. Links can be created from a terminal or an AI agent.
Open-source, self-hosted artifact sharing. Drop a file, an HTML page, or a whole site and get a
branded, password-protected (zero-knowledge AES-256) link on your own domain in ~1 second โ
from your terminal or any AI agent. The open-source alternative to Stacktree.
No install โ open hushdrop.dev/try, drop an HTML file, get a link. No account.
One-off from the terminal โ zero install, zero setup, no account:
bash
npx hushdrop report.html # โ https://hushdrop.dev/u/xxxx (+ password, copied) โ no setup, no account
Free hosted account โ persistent links on your own handle (hushdrop.dev/you/<slug>):
bash
npx hushdrop login # passwordless: GitHub or magic link
npx hushdrop report.html # โ https://hushdrop.dev/you/report-a1b2 (persistent)
Your own domain โ self-host on your Vercel Blob (free, MIT, your URL + brand forever):
bash
# one-click: the "Deploy with Vercel" button above auto-provisions a Blob store โ then:
npx hushdrop-install # wire your agents + CLI
hush deploy --domain share.yoursite.com # or do it from a local clone
No dashboard required. Two commands to try; one more to own.
Why this exists
Anthropic shipped artifact sharing so teams could hand each other the things they make with AI. It's
great โ and it's locked to their surface, their domain, their account. Stacktree does the agent-native
version, but it's a closed SaaS: your content sits on their servers, custom domains and limits are
paywalled, and you can't audit or self-host it.
I make things all day with agents: reports, proposals, guides, dashboards, whole little sites. I wanted
to hand someone a link that's mine โ my domain, my brand, my keys โ in the time it takes to type one
command, without uploading client work to someone else's server. So hush does exactly that:
terminal-native, zero-knowledge, on your own domain, usable from any agent. MIT.
npx hushdrop-install registers the drops MCP server into your detected agents (Claude Code, Codex,
Cursor, Windsurf, OpenCode, Amp), puts hush on your PATH, and prints config for GUI clients.
Brand (HTML) โ inject favicon, OG/Twitter card, and a subtle corner badge before </body>.
Encrypt (if locking) โ StatiCrypt (AES-256, client-side) behind your branded unlock gate. The badge is baked in before encryption, so it survives.
Upload to Vercel Blob under a clean key.
Serve โ yourdomain.com/<slug> proxies the blob via middleware.js, rewriting headers so encrypted HTML decrypts + renders (not downloads) and CSP doesn't block the unlock script. Drops are noindex, nofollow, noai.
Report โ URL (+ password) printed and copied to your clipboard.
Serving is a dumb transparent proxy; all branding + encryption happen client-side at upload. The server only ever stores ciphertext.
Self-host
The Deploy button clones the repo and auto-provisions a Blob store (it injects BLOB_READ_WRITE_TOKEN;
the app derives its store from the token, so it just works). Then npx hushdrop-install + hush init --domain share.yoursite.com to point your CLI + agents at your instance. Self-host is token-only, free, unlimited
โ no account needed. Full walkthrough in skill/SETUP.md.
Presentation โ name, colors, owner, social links. Edit to rebrand.
yes
~/.hushdrop/config.json
Infra โ domain, blob host, Vercel project. Written by hush init.
no
~/.hushdrop/.env
Your BLOB_READ_WRITE_TOKEN.
no
FAQ
Is it really zero-knowledge? Yes โ for locked drops, AES-256 runs in your browser before upload; the server stores only ciphertext.
Managed vs. hosted vs. self-host? Managed = anonymous, 24h, no account. Hosted = free account, persistent links on hushdrop.dev/you/โฆ. Self-host = your own domain + Blob.
Does it need Vercel? Only to self-host. The managed + hosted tiers need nothing but npx.
How is this different from Stacktree? Same agent-native idea, but open-source, self-hostable, your own domain free, and anonymous (no account). See the comparison.
Can agents use it without MCP? Yes โ it's a single CLI; any agent that runs a shell command can publish.
Is it free? Yes. MIT. Self-host costs only your own (usually pennies) Vercel Blob usage.
Security
Locked HTML is genuinely AES-256 encrypted in the browser โ use long passwords; strong against casual access, not a vault.
Raw files are protected by an unguessable slug; use --page -p <password> for a gated download.
Passwords are stored in ~/.hushdrop/manifest.json on your machine only โ never uploaded.