telegram bot
deny.sh on Telegram.
Exploring decoys for AI agents? Try encrypting a test message and choosing a fake (decoy) in a Telegram bot chat. Unlike the browser tool, the bot processes your message and passwords on its server; Telegram also handles the chat. @denyshbot
↓
Commands
/encrypt
Encrypt any message with deniable encryption. The bot walks you through each step.
Send your message
Set the real message’s password
Set a separate decoy password
Enter your decoy message
Save the encrypted data (ciphertext) and both control files, which select the message
/decrypt
Decrypt a ciphertext. Supply the hex, your password, and a control file.
Paste the hex ciphertext
Use the password paired with the control file: real password + real control file, or decoy password + decoy control file. This is the bot/protect-seed scheme.
Upload a control file (real or decoy), or pick one from your vault. Each control file needs its matching password to recover the corresponding message.
/protect
Seed phrase wizard. Validates BIP-39 word count (12, 15, 18, 21, or 24 words), then runs the same encrypt flow as
/encrypt.
/vault
Manage control files stored in your bot vault. List, download, or delete with inline buttons.
Shortcut: Reply to any message with
/encrypt and the bot will encrypt that message's text directly, skipping the manual input step.
Security
Password messages removed
The bot attempts to delete password messages after reading them. This does not guarantee removal from Telegram infrastructure, notifications or device history.
DMs only
Encryption and decryption only run in direct messages. Group commands redirect you to a private chat.
Padded control files
All control files are padded to identical sizes. An observer cannot infer which is real vs decoy from the file size.
Passwords never stored
Passwords exist only in memory during the active operation. Nothing is written to disk, logs, or the vault.
Opening bot files in other tools. To open a bot file in the web tool or core CLI, enter the password matching its control file in both password fields. Bot files use a different pairing from the web tool’s usual two-password setup.