Security Features
We use industry-leading security technologies to ensure your data receives the highest level of protection
Core Security Features
Zero-Knowledge Architecture
We can never access your master password or stored data — even with sync enabled, we cannot decrypt or view your data.
- Server cannot decrypt your data
- We cannot access your master password
- Even with sync, we cannot view your data
- Your privacy is fully protected
End-to-End Encryption
AES-256 bit encryption — data is encrypted before it leaves your device, only you hold the decryption key.
- AES-256 bit encryption algorithm
- Data is encrypted on the device
- Encryption keys are stored only on your device
- Compliant with international security standards
Flexible Storage
Fully local storage by default, optional end-to-end encrypted sync. WebDAV encrypted backup, compatible with iCloud, Nextcloud and more.
- Fully local storage by default
- WebDAV end-to-end encrypted backup
- Compatible with iCloud, Nextcloud and more
- Supports KeyMe hosting service
- Supports self-managed remote storage
- Secure multi-device sync
Multi-Layer Protection
6-digit PIN code, security question recovery, auto-lock mechanism, biometric authentication (fingerprint/face).
- 6-digit PIN code protection
- Security question recovery mechanism
- Auto-lock mechanism
- Biometric authentication (fingerprint/face)
Technical Details
App Isolation
App sandbox isolation, file system permission control, all data stored in app-private directories, inaccessible to other apps.
Encrypted Transfer
If using sync, all data transfer uses end-to-end encryption to ensure data security in transit.
Data Integrity
Cryptographic hash algorithms ensure data integrity and prevent tampering.
Access Control
Strict access control ensures only authorized users can access data.
WebDAV Encrypted Backup
End-to-end encrypted backup via WebDAV protocol, server zero-trust architecture. Large files are encrypted independently for maximum security.
Privacy Protection
We do not collect, share or track any of your data. No ads, no tracking, no analytics.
Security Standards
AES-256
Advanced Encryption Standard, 256-bit key length, widely adopted by governments and financial institutions worldwide
SHA-256
Secure Hash Algorithm, used for encrypted storage of PIN codes and security questions
TOTP
Time-based One-Time Password algorithm, compliant with RFC 6238 standard
End-to-End Encryption
Data is encrypted at the sending end, only the receiving end can decrypt it — no middle party can view it
WebDAV Protocol
Encrypted backup based on standard WebDAV protocol, compatible with mainstream cloud storage services
Our Security Commitment
We are committed to using the highest security standards to protect your data. With our zero-knowledge architecture, we can never access your data. Even with sync enabled, all data is end-to-end encrypted and only you hold the decryption key. Your privacy and security are our top priority.