<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:dc="http://purl.org/dc/elements/1.1/">
  <channel>
    <title>DEV Community: Ishan Naik</title>
    <description>The latest articles on DEV Community by Ishan Naik (@ishannaik).</description>
    <link>https://dev.to/ishannaik</link>
    <image>
      <url>https://media2.dev.to/dynamic/image/width=90,height=90,fit=cover,gravity=auto,format=auto/https:%2F%2Fdev-to-uploads.s3.amazonaws.com%2Fuploads%2Fuser%2Fprofile_image%2F3703707%2Fca7b9a1d-5a10-4c47-9785-6f08e881f539.jpg</url>
      <title>DEV Community: Ishan Naik</title>
      <link>https://dev.to/ishannaik</link>
    </image>
    <atom:link rel="self" type="application/rss+xml" href="https://dev.to/feed/ishannaik"/>
    <language>en</language>
    <item>
      <title>[Boost]</title>
      <dc:creator>Ishan Naik</dc:creator>
      <pubDate>Sun, 11 Jan 2026 03:34:15 +0000</pubDate>
      <link>https://dev.to/ishannaik/-34n2</link>
      <guid>https://dev.to/ishannaik/-34n2</guid>
      <description>&lt;div class="ltag__link"&gt;
  &lt;a href="/ishannaik" class="ltag__link__link"&gt;
    &lt;div class="ltag__link__pic"&gt;
      &lt;img src="https://media2.dev.to/dynamic/image/width=800%2Cheight=%2Cfit=scale-down%2Cgravity=auto%2Cformat=auto/https%3A%2F%2Fdev-to-uploads.s3.amazonaws.com%2Fuploads%2Fuser%2Fprofile_image%2F3703707%2Fca7b9a1d-5a10-4c47-9785-6f08e881f539.jpg" alt="ishannaik"&gt;
    &lt;/div&gt;
  &lt;/a&gt;
  &lt;a href="https://dev.to/ishannaik/i-built-a-pastebin-where-even-i-cant-read-your-data-3fj4" class="ltag__link__link"&gt;
    &lt;div class="ltag__link__content"&gt;
      &lt;h2&gt;I Built a Pastebin Where Even I Can't Read Your Data&lt;/h2&gt;
      &lt;h3&gt;Ishan Naik ・ Jan 10&lt;/h3&gt;
      &lt;div class="ltag__link__taglist"&gt;
        &lt;span class="ltag__link__tag"&gt;#security&lt;/span&gt;
        &lt;span class="ltag__link__tag"&gt;#privacy&lt;/span&gt;
        &lt;span class="ltag__link__tag"&gt;#webdev&lt;/span&gt;
        &lt;span class="ltag__link__tag"&gt;#opensource&lt;/span&gt;
      &lt;/div&gt;
    &lt;/div&gt;
  &lt;/a&gt;
&lt;/div&gt;


</description>
      <category>security</category>
      <category>privacy</category>
      <category>webdev</category>
      <category>opensource</category>
    </item>
    <item>
      <title>My First saas</title>
      <dc:creator>Ishan Naik</dc:creator>
      <pubDate>Sat, 10 Jan 2026 15:31:02 +0000</pubDate>
      <link>https://dev.to/ishannaik/my-first-saas-1hgb</link>
      <guid>https://dev.to/ishannaik/my-first-saas-1hgb</guid>
      <description>&lt;div class="ltag__link"&gt;
  &lt;a href="/ishannaik" class="ltag__link__link"&gt;
    &lt;div class="ltag__link__pic"&gt;
      &lt;img src="https://media2.dev.to/dynamic/image/width=800%2Cheight=%2Cfit=scale-down%2Cgravity=auto%2Cformat=auto/https%3A%2F%2Fdev-to-uploads.s3.amazonaws.com%2Fuploads%2Fuser%2Fprofile_image%2F3703707%2Fca7b9a1d-5a10-4c47-9785-6f08e881f539.jpg" alt="ishannaik"&gt;
    &lt;/div&gt;
  &lt;/a&gt;
  &lt;a href="https://dev.to/ishannaik/i-built-a-pastebin-where-even-i-cant-read-your-data-3fj4" class="ltag__link__link"&gt;
    &lt;div class="ltag__link__content"&gt;
      &lt;h2&gt;I Built a Pastebin Where Even I Can't Read Your Data&lt;/h2&gt;
      &lt;h3&gt;Ishan Naik ・ Jan 10&lt;/h3&gt;
      &lt;div class="ltag__link__taglist"&gt;
        &lt;span class="ltag__link__tag"&gt;#security&lt;/span&gt;
        &lt;span class="ltag__link__tag"&gt;#privacy&lt;/span&gt;
        &lt;span class="ltag__link__tag"&gt;#webdev&lt;/span&gt;
        &lt;span class="ltag__link__tag"&gt;#opensource&lt;/span&gt;
      &lt;/div&gt;
    &lt;/div&gt;
  &lt;/a&gt;
&lt;/div&gt;


</description>
      <category>security</category>
      <category>privacy</category>
      <category>webdev</category>
      <category>opensource</category>
    </item>
    <item>
      <title>[Boost]</title>
      <dc:creator>Ishan Naik</dc:creator>
      <pubDate>Sat, 10 Jan 2026 10:44:58 +0000</pubDate>
      <link>https://dev.to/ishannaik/-1g9j</link>
      <guid>https://dev.to/ishannaik/-1g9j</guid>
      <description>&lt;div class="ltag__link"&gt;
  &lt;a href="/ishannaik" class="ltag__link__link"&gt;
    &lt;div class="ltag__link__pic"&gt;
      &lt;img src="https://media2.dev.to/dynamic/image/width=800%2Cheight=%2Cfit=scale-down%2Cgravity=auto%2Cformat=auto/https%3A%2F%2Fdev-to-uploads.s3.amazonaws.com%2Fuploads%2Fuser%2Fprofile_image%2F3703707%2Fca7b9a1d-5a10-4c47-9785-6f08e881f539.jpg" alt="ishannaik"&gt;
    &lt;/div&gt;
  &lt;/a&gt;
  &lt;a href="https://dev.to/ishannaik/i-built-a-pastebin-where-even-i-cant-read-your-data-3fj4" class="ltag__link__link"&gt;
    &lt;div class="ltag__link__content"&gt;
      &lt;h2&gt;I Built a Pastebin Where Even I Can't Read Your Data&lt;/h2&gt;
      &lt;h3&gt;Ishan Naik ・ Jan 10&lt;/h3&gt;
      &lt;div class="ltag__link__taglist"&gt;
        &lt;span class="ltag__link__tag"&gt;#security&lt;/span&gt;
        &lt;span class="ltag__link__tag"&gt;#privacy&lt;/span&gt;
        &lt;span class="ltag__link__tag"&gt;#webdev&lt;/span&gt;
        &lt;span class="ltag__link__tag"&gt;#opensource&lt;/span&gt;
      &lt;/div&gt;
    &lt;/div&gt;
  &lt;/a&gt;
&lt;/div&gt;


</description>
      <category>security</category>
      <category>privacy</category>
      <category>webdev</category>
      <category>opensource</category>
    </item>
    <item>
      <title>I Built a Pastebin Where Even I Can't Read Your Data</title>
      <dc:creator>Ishan Naik</dc:creator>
      <pubDate>Sat, 10 Jan 2026 10:25:07 +0000</pubDate>
      <link>https://dev.to/ishannaik/i-built-a-pastebin-where-even-i-cant-read-your-data-3fj4</link>
      <guid>https://dev.to/ishannaik/i-built-a-pastebin-where-even-i-cant-read-your-data-3fj4</guid>
      <description>&lt;p&gt;Last week, a coworker Slacked me an AWS key. In plain text. In a channel with 50 people.&lt;/p&gt;

&lt;p&gt;"Can you delete that?" I asked.&lt;/p&gt;

&lt;p&gt;"Already did."&lt;/p&gt;

&lt;p&gt;Cool. Except Slack stores message history. That key is sitting on Slack's servers forever. One breach, one rogue employee, one subpoena - and it's exposed.&lt;/p&gt;

&lt;p&gt;This happens constantly. Developers share secrets via Slack, Discord, Pastebin. All plain text. All stored on servers we don't control.&lt;/p&gt;

&lt;p&gt;So I built something different.&lt;/p&gt;

&lt;h2&gt;
  
  
  The Problem
&lt;/h2&gt;

&lt;p&gt;Every time you share a password or API key, you're trusting:&lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;The platform's servers&lt;/li&gt;
&lt;li&gt;The platform's employees&lt;/li&gt;
&lt;li&gt;The platform's security&lt;/li&gt;
&lt;li&gt;Every future breach that hasn't happened yet&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;That's a lot of trust for "just a quick paste."&lt;/p&gt;

&lt;p&gt;Regular pastebins store your data in plain text. When (not if) they get breached, everything's exposed.&lt;/p&gt;

&lt;h2&gt;
  
  
  The Solution: Zero-Knowledge Architecture
&lt;/h2&gt;

&lt;p&gt;CloakBin encrypts everything in your browser before it ever touches our servers. We literally cannot read your pastes, even if we wanted to.&lt;/p&gt;

&lt;p&gt;Here's how it works:&lt;/p&gt;

&lt;h3&gt;
  
  
  1. Client-Side Encryption
&lt;/h3&gt;

&lt;p&gt;When you create a paste, JavaScript encrypts your content using AES-256 (same encryption banks use) right in your browser.&lt;/p&gt;

&lt;h3&gt;
  
  
  2. The Key Never Leaves Your Browser
&lt;/h3&gt;

&lt;p&gt;The encryption key lives in the URL fragment the part after the &lt;code&gt;#&lt;/code&gt;:&lt;br&gt;
&lt;/p&gt;

&lt;div class="highlight js-code-highlight"&gt;
&lt;pre class="highlight plaintext"&gt;&lt;code&gt;cloakbin.com/abc123#your-secret-key
&lt;/code&gt;&lt;/pre&gt;

&lt;/div&gt;



&lt;p&gt;Here's the trick: browsers never send URL fragments to servers. It's not a feature I built - it's how HTTP works. The &lt;code&gt;#&lt;/code&gt; and everything after it stays client-side.&lt;/p&gt;

&lt;blockquote&gt;
&lt;p&gt;ℹ️ This is a fundamental web security feature. Check your browser's network tab - you'll never see the fragment in any request.&lt;/p&gt;
&lt;/blockquote&gt;

&lt;h3&gt;
  
  
  3. What Our Server Actually Stores
&lt;/h3&gt;



&lt;div class="highlight js-code-highlight"&gt;
&lt;pre class="highlight plaintext"&gt;&lt;code&gt;Encrypted blob: U2FsdGVkX1+8K3...
Key: ¯\_(ツ)_/¯
&lt;/code&gt;&lt;/pre&gt;

&lt;/div&gt;



&lt;p&gt;We store encrypted noise. Without the key (which we never receive), it's unreadable.&lt;/p&gt;

&lt;h2&gt;
  
  
  The Two-Factor Sharing Problem
&lt;/h2&gt;

&lt;p&gt;"Cool, but if I share the URL on Discord, the key's right there in the message."&lt;/p&gt;

&lt;p&gt;You're right. That's why we added password protection.&lt;/p&gt;

&lt;p&gt;With a password enabled:&lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;The encryption key is derived from your password (using PBKDF2)&lt;/li&gt;
&lt;li&gt;No key in the URL - just a clean link like &lt;code&gt;cloakbin.com/abc123&lt;/code&gt;
&lt;/li&gt;
&lt;li&gt;Only someone who knows the password can decrypt&lt;/li&gt;
&lt;/ul&gt;

&lt;blockquote&gt;
&lt;p&gt;💡 &lt;strong&gt;Secure sharing workflow:&lt;/strong&gt;&lt;/p&gt;

&lt;ol&gt;
&lt;li&gt;Create paste with password protection&lt;/li&gt;
&lt;li&gt;Share the link on Discord/Slack/email&lt;/li&gt;
&lt;li&gt;Send password via different channel (text, call)&lt;/li&gt;
&lt;/ol&gt;

&lt;p&gt;Two channels = much harder to intercept both.&lt;/p&gt;
&lt;/blockquote&gt;

&lt;h2&gt;
  
  
  Try It Out
&lt;/h2&gt;

&lt;p&gt;&lt;a href="https://media2.dev.to/dynamic/image/width=800%2Cheight=%2Cfit=scale-down%2Cgravity=auto%2Cformat=auto/https%3A%2F%2Fdev-to-uploads.s3.amazonaws.com%2Fuploads%2Farticles%2Fddp2cpmeonxp8dmtgs73.png" class="article-body-image-wrapper"&gt;&lt;img src="https://media2.dev.to/dynamic/image/width=800%2Cheight=%2Cfit=scale-down%2Cgravity=auto%2Cformat=auto/https%3A%2F%2Fdev-to-uploads.s3.amazonaws.com%2Fuploads%2Farticles%2Fddp2cpmeonxp8dmtgs73.png" alt=" " width="192" height="192"&gt;&lt;/a&gt;&lt;/p&gt;

&lt;p&gt;Ready to stop sharing secrets in plain text?&lt;/p&gt;

&lt;p&gt;🔗 &lt;strong&gt;&lt;a href="https://cloakbin.com" rel="noopener noreferrer"&gt;Try CloakBin&lt;/a&gt;&lt;/strong&gt; - Create your first encrypted paste&lt;/p&gt;

&lt;p&gt;📖 &lt;strong&gt;&lt;a href="https://github.com/ishannaik/cloakbin" rel="noopener noreferrer"&gt;View the Source Code&lt;/a&gt;&lt;/strong&gt; - Star the repo if you find it useful!&lt;/p&gt;




&lt;p&gt;&lt;em&gt;Got questions or feedback? Drop a comment below or open an issue on GitHub.&lt;/em&gt;&lt;/p&gt;

</description>
      <category>security</category>
      <category>privacy</category>
      <category>webdev</category>
      <category>opensource</category>
    </item>
  </channel>
</rss>
