OneLocked encrypts everything on your device before syncing. We never receive your master password or decrypted data — not even if we wanted to.
My Vault
How It Works
No magic. Just cryptography done right, from day one.
Choose a strong master password. We run it through PBKDF2 with 600,000 iterations to derive your encryption keys — entirely on your device.
Add passwords, cards, secure notes. Each item is AES-256-GCM encrypted before it ever touches our servers. We only store ciphertext.
Your encrypted vault syncs in real-time across every device. Only your master password can decrypt it — not us, not anyone.
Features
Every feature built with one goal — keeping your digital life private and accessible only to you.
Your data is encrypted with AES-256-GCM before it leaves your device. We mathematically cannot see your passwords.
Blazing-fast, memory-safe backend. No buffer overflows, no data races — reliability baked into the language.
Generate uncrackable passwords and passphrases with cryptographically secure randomness. Never reuse again.
Every vault item is encrypted with its own unique key, then wrapped by your master vault key. Layered security.
Access your vault from any device — web, iOS, Android. Real-time sync keeps everything consistent.
Share credentials with teammates using end-to-end encrypted sharing. Granular permissions, zero plaintext.
Store payment cards, passports, and identities alongside passwords. One encrypted vault for everything.
Re-open your vault with Face ID or fingerprint. Vault keys are secured in the device's secure enclave.
Get notified when your credentials appear in known data breaches. Proactive protection, not reactive panic.
Security Architecture
GCM authenticated mode — same algorithm used by governments and militaries worldwide.
Bruteforce-resistant key derivation. Millions of guesses per second become computationally impractical.
We never receive your master password or decrypted data. Zero-knowledge is architectural, not a policy.
Memory safety without garbage collection. No use-after-free, no buffer overflows at the language level.
Why OneLocked
Zero-knowledge means your master password never leaves your device. We store only encrypted blobs. Even if we were breached or served a court order, your plaintext data is unreachable.
How our encryption worksJoin OneLocked and take control of your security. Free forever for personal use. No credit card. No catch.