Flagship · encrypted secret sharing

Built for the agent era.

Agents and teammates need credentials — not plaintext in Slack, logs, or prompts. SharePassword encrypts secrets client-side so keys move as expiring links, with least privilege for whoever opens them.

Scroll
Client-side encryption Plaintext stays in the browser — open the SharePassword path GitHub →
sharepasswords.com · sendtry.com · sololeveling.us 3 live product domains — SharePassword, Sendtry, SoloLeveling
ThePort v0.1.0+ · Mermaid Editor v0.1.4+ Installable open macOS apps from GitHub Releases Releases →

SharePassword

Encrypted secret & file sharing

Create encrypted links for passwords, API keys, notes, and temporary files. Plaintext stays in your browser — receivers don’t need an account.

  • Client-side encryption (plaintext stays local)
  • One-time and expiring links
  • Passwords, API keys, notes, and files
SharePassword product UI

More products under Ovvlo

Software lifecycle and interview prep — own domains, clear jobs, same craft bar.

Sendtry product UI

Software Lifecycle

Live
sendtry.com

Sendtry

From brief to shipped

Requirements, client documents, approvals, and delivery issues in one workspace. Software lifecycle without the noise.

SoloLeveling product UI

Education

Live
sololeveling.us

SoloLeveling

Interview prep with a deadline

Software interview prep that connects your target to today’s work, verified evidence, and tomorrow’s review — coding, system design, mocks.

Security that feeds the product line

Secrets, agents, and APIs — why Ovvlo products are built the way they are.

Secret hygienePrompt injectionAPI securityAgent surface
Product

Stop pasting secrets into Slack.

Credential hygiene & secret sharing

How secrets move between people and systems — client-side encryption, expiring links, and least-privilege defaults operators actually use. Foundation for safer cloud and agent workflows.

  • Client-side encryption for passwords, keys, and files
  • One-time and expiring share links
Agent risk

LLMs follow instructions. Attackers write them too.

Prompt injection & agent abuse

In the agent era, prompt injection and tool abuse are first-class threats. We design controls, isolation, and review loops so agents help without becoming a backdoor.

  • Prompt injection patterns against tools & data
  • Least privilege for agent credentials and tools
Practice

Your API is the product’s attack surface.

API security & exposure

API vulnerability and abuse analysis — authZ gaps, over-permissioned tokens, data leakage paths, and rate/abuse controls — so product APIs stay an advantage, not a liability.

  • AuthN/AuthZ and token scope review
  • Exposure, IDOR-class, and data-leak paths

Native macOS apps

Installable releases from GitHub — open tools for ports, diagrams, and ops.

Utilities

macOS
Open Source

OpenClaw Gateway Watchdog

Infrastructure

macOS watchdog for gateway failure modes — catches ephemeral port exhaustion in production bots.

opswatchdogmacOS
macOS
Open Source

Spotlight Ignore Junk

Tools

Shell utility to add junk directories to macOS Spotlight’s ignore list — keep search clean.

shellSpotlightproductivity

Product partnerships & security-minded builds

Teams shipping secrets, delivery systems, or interview prep — let’s talk.