Encrypt everything. Forget nothing.
Every password. Every account. Encrypted in your browser before anything leaves your device.
Encrypted before it
touches our servers
Every password, backup code, and recovery email is encrypted with AES-256-GCM in your browser using a key derived from your master password via PBKDF2 — 310,000 iterations of SHA-256. We store ciphertext. Nothing else.
- AES-256-GCM with unique IV per field
- PBKDF2 key derivation — 310k iterations
- Master password never sent to server
- In-memory key only — wipes on lock
Find any account
in milliseconds
Search across site names, URLs, tags, and entry types without ever decrypting anything. Hit ⌘K anywhere in the app to open the command palette — open, copy, reveal, or navigate in one keystroke.
- Full-text search on unencrypted metadata
- Command palette with keyboard shortcuts
- Filter by domain, type, or collection
- Results in <50ms across 1000+ entries
Encrypted files,
not just passwords
Attach passport scans, tax documents, screenshots, and certificates to any entry. Files are encrypted client-side before upload — Cloudflare R2 stores only ciphertext. Per-attachment security levels (open, masked, protected) give you granular control.
- Up to 20 files per entry
- 25 MB per file (10 MB images)
- Per-file security level controls
- Inline preview — PDF, image, text
We built Vault so we
cannot read your data.
Every encryption decision — from the algorithm to the iteration count to where the key lives — was made to ensure that even a full database breach exposes nothing usable. This isn't a feature. It's the architecture.
Your vault. Analyzed.
Never exposed.
AI examines only metadata — site names, strength scores, entry counts. Your actual passwords are never sent to any model. Zero-knowledge remains absolute.
Breach detection
HaveIBeenPwned checks using k-anonymity. Only the first 5 chars of the SHA-1 hash leave your device.
Weak password alerts
Entropy-based strength scoring catches reused, dictionary, and short passwords across your entire vault.
Auto-categorize
Entries are automatically categorized by URL. Import 200 passwords from Chrome and they're organized instantly.
Vault health score
A real-time security score with an action plan — fix the 4 breached first, then the 11 weak, then duplicates.
Pricing that respects you
Start free. No credit card. No tricks.
Everything to get organized.
- Unlimited password entries
- 50 long-content entries
- 3 collections
- Password generator
- Auto-lock & clipboard clear
- Brand icons & favicons
- File / image storage
- AI security features
Files, images, and AI insights.
- Everything in Free
- 100 encrypted files
- 100 encrypted images
- Unlimited collections
- AI auto-categorization
- Vault health score
- Breach alerts (HIBP)
- Custom types & export
Zero limits for power users.
- Everything in Pro
- Unlimited files & images
- Unlimited long-content entries
- Custom entry types
- Encrypted export (JSON/ZIP)
- Per-entry activity log
- Blockchain backup (Phase 2)
- Priority support
All plans include end-to-end encryption · Cancel anytime
Questions
Your passwords deserve better
than browser autofill.
Join developers and everyday users who've moved every credential to one encrypted hub.
Zero-knowledge · AES-256-GCM · Open to audit