Zero-Knowledge, Air-Gapped Password & Secret Vault
AES-256-GCM Zero-Knowledge Secure Vault
Authorize with Touch ID / Face ID or enter your Master Password to seal the vault archive.
appDataFolderAuricPass is an ultra-secure, client-side, zero-knowledge credentials vault engineered for developers, enterprises, and privacy-conscious users. It acts as your personal Security Command Center for all sensitive credentials.
Master Passwords are transformed into 256-bit cryptographic keys using PBKDF2 with SHA-256 hashing and 600,000 computational rounds combined with a cryptographically secure 128-bit random salt. This exceeds standard OWASP recommendations and prevents GPU/ASIC rainbow table attacks.
All records, keys, and metadata are sealed using Advanced Encryption Standard in Galois/Counter Mode (AES-256-GCM) with unique 96-bit initialization vectors (IV) and 128-bit authentication tags per archive. Any tampering or bit modification immediately invalidates decryption.
Touch ID, Face ID, and FIDO2 hardware security keys are interfaced via the W3C Web Authentication standard, binding unlock assertions directly to device secure enclaves.
AuricPass is strictly a Zero-Knowledge Software Architecture. Because all cryptographic keys are derived locally from the Master Password and never transmitted to our servers, AuricPass has no access to your Master Password, plaintext secrets, or recovery keys. In the event that you lose or forget your Master Password, AuricPass cannot recover, reset, or decrypt your vault. You acknowledge and agree that maintaining backups and custody of your master credentials is your sole responsibility.
THE SOFTWARE AND SERVICES ARE PROVIDED ON AN "AS IS" AND "AS AVAILABLE" BASIS WITHOUT WARRANTY OF ANY KIND, EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE IMPLIED WARRANTIES OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE, AND NON-INFRINGEMENT. IN NO EVENT SHALL AURICPASS, VANDENBRANDEN HOLDINGS, ITS AFFILIATES, DIRECTORS, EMPLOYEES, OR AGENTS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, LOSS OF DATA, LOSS OF PROFITS, ENCRYPTION CORRUPTION, OR BUSINESS INTERRUPTION) ARISING OUT OF OR IN CONNECTION WITH THE USE OR INABILITY TO USE THIS APPLICATION.
The AuricPass Self-Healer automatically audits local encrypted storage keys, validates WebAuthn hardware biometric key bindings, resolves ciphertext schema corruptions, and repairs broken session links without losing any credentials.
Please confirm your 6-digit Authenticator code or Recovery Key to proceed.
appDataFolder.