Security Features

We use industry-leading security technologies to ensure your data receives the highest level of protection

Core Security Features

Zero-Knowledge Architecture

We can never access your master password or stored data — even with sync enabled, we cannot decrypt or view your data.

  • Server cannot decrypt your data
  • We cannot access your master password
  • Even with sync, we cannot view your data
  • Your privacy is fully protected

End-to-End Encryption

AES-256 bit encryption — data is encrypted before it leaves your device, only you hold the decryption key.

  • AES-256 bit encryption algorithm
  • Data is encrypted on the device
  • Encryption keys are stored only on your device
  • Compliant with international security standards

Flexible Storage

Fully local storage by default, optional end-to-end encrypted sync. WebDAV encrypted backup, compatible with iCloud, Nextcloud and more.

  • Fully local storage by default
  • WebDAV end-to-end encrypted backup
  • Compatible with iCloud, Nextcloud and more
  • Supports KeyMe hosting service
  • Supports self-managed remote storage
  • Secure multi-device sync

Multi-Layer Protection

6-digit PIN code, security question recovery, auto-lock mechanism, biometric authentication (fingerprint/face).

  • 6-digit PIN code protection
  • Security question recovery mechanism
  • Auto-lock mechanism
  • Biometric authentication (fingerprint/face)

Technical Details

App Isolation

App sandbox isolation, file system permission control, all data stored in app-private directories, inaccessible to other apps.

Encrypted Transfer

If using sync, all data transfer uses end-to-end encryption to ensure data security in transit.

Data Integrity

Cryptographic hash algorithms ensure data integrity and prevent tampering.

Access Control

Strict access control ensures only authorized users can access data.

WebDAV Encrypted Backup

End-to-end encrypted backup via WebDAV protocol, server zero-trust architecture. Large files are encrypted independently for maximum security.

Privacy Protection

We do not collect, share or track any of your data. No ads, no tracking, no analytics.

Security Standards

AES-256

Advanced Encryption Standard, 256-bit key length, widely adopted by governments and financial institutions worldwide

SHA-256

Secure Hash Algorithm, used for encrypted storage of PIN codes and security questions

TOTP

Time-based One-Time Password algorithm, compliant with RFC 6238 standard

End-to-End Encryption

Data is encrypted at the sending end, only the receiving end can decrypt it — no middle party can view it

WebDAV Protocol

Encrypted backup based on standard WebDAV protocol, compatible with mainstream cloud storage services

Our Security Commitment

We are committed to using the highest security standards to protect your data. With our zero-knowledge architecture, we can never access your data. Even with sync enabled, all data is end-to-end encrypted and only you hold the decryption key. Your privacy and security are our top priority.