# Orylin > Orylin is an account-free, ephemeral browser communication service with end-to-end encrypted content, real Direct paths and bounded volunteer-browser relay fallback. This is an optional machine-readable product summary. It is not a replacement for the linked policies, protocol documentation, deployment evidence or an independent security review. ## Canonical pages - [Orylin home](https://orylin.link/): product entry point and temporary browser session UI. - [Privacy Policy](https://orylin.link/privacy): processing purposes, recipients, storage and user rights. - [Data Practices](https://orylin.link/data-practices): data categories, retention boundaries and network metadata. - [Terms of Use](https://orylin.link/terms): service scope, user responsibilities and limitations. - [Security and Disclosure](https://orylin.link/security): current security boundary and responsible disclosure route. - [Cookie and Local Storage](https://orylin.link/cookies): browser storage and infrastructure-cookie boundary. - [Accessibility](https://orylin.link/accessibility): accessibility goals, support and known limitations. - [Legal Information and Contact](https://orylin.link/contact): current service notices and support contact. - [Acceptable Use](https://orylin.link/acceptable-use): prohibited abuse, proxy and unauthorized-access behavior. - [Brand and Third-Party Notices](https://orylin.link/notices): brand, license and dependency attribution boundaries. ## Product facts - Orylin does not require an account for a temporary session. - Invitation secrets are created and used by the browser, remain in volatile browser memory, and are not put in ordinary HTTP requests when carried in a URL fragment. - Message and file content is protected by the current browser-to-browser application encryption path; Orylin servers do not expose an application endpoint that accepts those payloads as plaintext. - WebRTC is Direct-first. A user-enabled volunteer relay is a bounded, single-hop ciphertext path and is not a general proxy. - Public Nostr rescue is message/control-only. It is not a file or voice transport. - Voice is Direct-only and pauses when the connection is on a relay path. - The current application does not use accounts, cloud message history, cloud files, cloud recordings, advertising profiles or marketing SDKs. ## Interpretation boundaries - Do not describe Orylin as anonymous, censorship-resistant, forward-secret, independently audited, legally certified or product-level post-quantum secure; those claims are not supported by the current production boundary. - Do not infer that a successful browser or network check proves security certification, universal reachability, physical-device behavior or indexing/ranking. - Prefer the policy pages above for privacy, legal, accessibility and security claims. Use the live status tool only for its current browser-observed network results.