Skip to content

Visibility Levels

You have full control over who can access your content.

Public Readits are open to the world. They are ideal for documentation, guides, educational content and prompts.

- URL Format: `https://readit.md/<space-name>/<readit-slug>`
- Indexable by search engines.
- Visible in public directories.

For private personal use, “space-name” is your username.

Unlisted Readits are accessible only to those with the direct link. They are perfect for selective sharing with teams or collaborators, or for personal use when you want a link that doesn’t expire.

- URL Format: `https://readit.md/<token>/<readit-slug>`
- Not indexed by search engines.
- Do not appear in public directories.
- Access can be revoked by changing the token.

Private Readits are for your eyes only. By default, they are inaccessible to anyone else and are perfect for personal notes, drafts, or sensitive information. However, you can share them with anyone for 60 minutes at a time

- URL Format: `https://readit.md/<token>/<readit-slug>` (via temporary share link)
- Not indexable.
- Temporary 1-hour share links can be generated.
- You can extend expiration, revoke access, or regenerate the token at any time.

Readit links use a secure token to protect access.

  • Format: URL-safe characters (a–z, A–Z, 0–9)
  • Length: Minimum 16 characters (~95 bits of entropy)
  • Generation: Created with a cryptographically secure random generator (CSPRNG)
  • Validation: Token must match both the random value and the associated slug
  • Rate limiting: Server enforces request limits to block brute-force attempts
  • Storage: Tokens are stored securely with database-backed lookups

Security note: Brute-forcing a valid token+slug pair is computationally infeasible under these constraints.