Share a prototype. Keep the source off the server.

Drop a folder.
Get a URL.

HTML is encrypted on your device with logic the server ships. You get a short link. The visitor’s browser decrypts and renders. Scripts never execute on the host.

Drop a folder or HTML file encrypted in this browser before upload
Install /host for Cursor, Claude, VS Code, Windsurf npx @quickhtmlhost/cli host ./dist

On-device encrypt

HTML is encrypted in this browser with AES-256-GCM. The share link stays short; the server holds the key so anyone with the URL can open it.

Server-controlled crypto

Clients fetch /crypto/v1.js at host time, so the algorithm can be rotated without shipping a new CLI.

Unique origin per site

Each prototype is decrypted in your browser and rendered in a sandboxed frame, so it cannot touch the dashboard.