- Algorithm: AES-256 in GCM mode. Key derived from your password with PBKDF2, 200,000 rounds of SHA-256, plus a random 16-byte salt and 12-byte IV per message.
- Everything runs in your browser. Nothing is uploaded, logged, or stored.
- If you lose the password, the text cannot be recovered. There is no backdoor and no reset.
- This is a handy utility, not a substitute for proper secret management. For production systems, use a dedicated secrets manager.
Frequently asked questions
What encryption is used?
AES-256 in GCM mode, an authenticated encryption standard. Your password is turned into a key with PBKDF2 (200,000 rounds of SHA-256) and a fresh random salt and IV are generated for every message.
Where does my password go?
Nowhere. Key derivation and encryption run with the WebCrypto API in your browser. The password is never transmitted or stored.
What if I forget the password?
The text is unrecoverable. AES-GCM has no backdoor, so keep the password somewhere safe if the data matters.
Preview
Related free tools
Free Base64 Encoder Decoder
Free Base64 encoder and decoder. Encode text to Base64 or decode Base64 back to text, righ
Free CSS Minifier Online
Free CSS minifier. Remove comments and whitespace from CSS to shrink file size and speed u
Free SHA-256 Hash Generator
Free SHA-256 hash generator. Hash text with SHA-256, SHA-384 or SHA-512 securely in your b