| There are several options, ranging from making the link one-time only to requiring a captcha or password. From TFA:
➜Can you explain more in details how Private Link Message (PLM) works?
Private Link Message (PLM) allows you to send and receive messages from people who don't use GPG. In order to send a message you can send a secret HTTPS link to your correspondent. It will look like https://test.nospy.co/n3FVgtFwR2cp839nX6dkQGzGjF38bJ5VwiX86u... . The link is temporary: once clicked by your correspondent it is too late to spy, the link does not work anymore. You can also, optionaly, setup an expiration date for the link. If your correspondent did not access the message before this date, it is too late to read. The link is filtered by a question. Depending on the level of surveillance you think you are in, the question can be a simple captcha to avoid bots, a secret question that your correspondent can answer but not the NSA, or a request for a password previously exchanged with your correspondent, or no question at all. Your correspondent will have a web interface to answer your message privately. You can also activate a permanent HTTPS interface for anyone to send you a message privately at any time. In practice a simple captcha will allow you to be safe from mass surveillance, since only targeted surveillance can be done by human beings. On top of that any spy will be detected, and have his IP address revealed. On our test, no PLM has ever been spyed even with no question at all. |
The idea that a captcha protects anyone from mass surveillance is probably unworthy of discussion.