In final testing

NexGuard isn’t on Google Play yet. Join early access and we’ll send the install link the day it opens.

Home Security Device-encrypted vault

Device-encrypted vault

The server only ever
sees ciphertext

Vault items added on the phone are encrypted there before they are sent, and the item’s name is encrypted with them. Two keys are in play: passwords and authenticator secrets use a non-exportable AES-256-GCM key in the Android Keystore that we never receive, while photos, documents and notes can optionally use a per-account key we hold, which is what lets them open on your web dashboard.

AES-256-GCM · Hardware-backed key · Encrypted item names

Passport.pdfOn your phone
Readable
encrypted on device
a3f8·9c2e·…·e21bAES-256-GCM ciphertext
Sealed
Our server stores this — and can’t decrypt it
Key stays on device Encrypted on device

How it works

Encrypted before it ever leaves your phone

The device key is auth-bound: a biometric or device-credential unlock authorizes it for a short window, then it re-locks. We never receive that key, and the ciphertext it sealed is useless without it. The per-account key behind web-accessible media is the other case, and the page says so where it applies.

On-device encryption
Data is sealed before it ever leaves your phone.
Hardware-backed, auth-bound key
The key lives in secure hardware and requires recent authentication to use.
Passwords we can’t decrypt
Logins and authenticator secrets are sealed with the device key alone, so there is nothing on our side that could open them or disclose them.
Files added from a computer
With web access on you can upload from a Mac or a PC. A browser holds no vault key — we do not send it one, because an XSS bug on the dashboard could then lift the key to everything — so that file arrives as the file over TLS and is encrypted here. It is marked as having come in that way, in the app and on the dashboard.
Media you can reach from the web
Photos, documents and notes can be sealed with a per-account key we hold, which is what lets you open them on your dashboard — off unless you turn it on, and never used for passwords.
Your phone encrypts key stays here a3f8·ciphertext Our server can’t decrypt

Least data, by design

What we hold — and what we never do

What we store

Ciphertext blobs and the fact that a vault item exists — never the item’s name in the clear, and never anything in the clear. For password items we hold no key, so the bytes stay shut. For web-accessible photos, documents and notes we hold the key, and say so.

What stays on device

The encryption key never leaves your phone. It’s non-exportable and bound to recent authentication, so only you can unseal an item.

If you delete your account

Your records are removed. The ciphertext we held is useless without your on-device key, which we never had in the first place.

Get early access

Seal what’s private

Get NexGuard free and store your most sensitive notes and files in a vault only you can open.