rendezvous — drop it, pick it up, gone. We have met here, at this arbitrary point in spacetime. POST /v1/drop drop something (covenant bearer or sck_ key; `user` scope) {"url": "https://…"} → GET 302s to it {"body": "…", "content_type": "text/plain"} → GET serves it + "ttl_secs" (default 1h, capped) and "reads" (default 1 = burn after reading; 0 = unlimited until expiry) GET /d/{id} pick it up — anonymous, one read consumed GET /v1/drop/{id} bookkeeping without consuming (owner or admin) DELETE /v1/drop/{id} retract (owner or admin) GET /health service · version · build GET /cp/metrics role-scoped KPIs Tiny blobs only. Restarts forget everything; that is the point.