A Password Manager That Stores Your Passkeys Too
Save passkeys alongside your passwords and sign in without typing anything. Built on the WebAuthn / FIDO2 standard, and free to use.
- Create and sign in with passkeys on supported sites
- Passkeys sync end-to-end encrypted with membership, and work locally without it
- Phishing-resistant by design — nothing reusable is ever sent to the site
- Passwords and passkeys live in the same vault, not two separate apps
What a passkey actually is
A passkey replaces the password with a key pair. The private half never leaves your device; the site only ever stores the public half. When you sign in, your device proves it holds the private key without transmitting anything the site — or an attacker who breaches it — could reuse.
That single property removes two of the most common ways accounts get taken over: a database leak that exposes credentials, and a phishing page that captures whatever you type.
Why phishing stops working
A passkey is bound to the exact domain it was created for. A convincing copy of a login page at a slightly different address simply cannot trigger it — the browser will not offer the passkey, because the origin does not match.
With a password, that judgement is left to the user, under time pressure, on a small screen. With a passkey it is enforced by the protocol.
How KeyMe Pass handles them
- Passkeys are stored in the same encrypted vault as your passwords
- Sync across devices is end-to-end encrypted (membership)
- Support depends on the platform — iOS 17+ and Google Play devices are the most complete today
- Some Android ROMs without Google services have limited or no passkey provider support
Passkeys in practice


How we handle passkeys
Standard WebAuthn / FIDO2
Not a proprietary scheme. Passkeys created in KeyMe Pass follow the same standard as every other compliant authenticator.
Stored with your passwords
Passkeys sit in the same encrypted vault, so you are not running a separate app for the accounts that have moved on from passwords.
Honest about platform gaps
Support depends on the OS. iOS 17+ and Android devices with Google services are the most complete today; some ROMs without Google services offer limited or no passkey provider support.
Free to create and use
Creating and signing in with passkeys costs nothing. Membership only matters if you want them synced to your other devices.
Free vs Membership
| Free | Membership | |
|---|---|---|
| Unlimited passwords, documents and TOTP entries | ||
| AutoFill on iOS, Android, macOS and browsers | ||
| Save and sign in with passkeys | ||
| Built-in two-factor (TOTP) code generation | ||
| Password generator and security check | ||
| Local-first storage · end-to-end encryption | ||
| Biometric unlock (Face ID / fingerprint) | ||
| Encrypted export and backup files | ||
| Encrypted sync across your devices | ||
| Sync to your own WebDAV server — no size limit | ||
| Or sync to our hosted space, 1 GB included (20 MB per file) |
Common questions
What is a passkey, in one sentence?
A key pair that replaces your password: the private half stays on your device and the site only stores the public half, so there is nothing reusable to steal.
Are passkeys safer than passwords?
For the two most common attacks, yes. A site breach cannot leak anything reusable, and a phishing page cannot trigger a passkey because the passkey is bound to the real domain.
Do I still need passwords?
For now, yes. Most sites still use passwords, so KeyMe Pass keeps both in the same vault rather than making you choose.
Do passkeys sync across my devices?
With membership, yes — end-to-end encrypted. Without it, passkeys still work on the device where you created them.
Why can I not use passkeys on my Android phone?
Passkey support comes from the OS-level credential manager. Devices without Google services, which includes some China-market ROMs, may offer limited or no passkey provider support. This is a platform limitation rather than an app setting.
Start using passkeys
Free to use, alongside everything else in your vault.