Encrypted vault architecture
The vault approach combines end-to-end encryption with dedicated key-derivation and encrypted-record handling.
A vault designed around your devices.
A password manager built around encrypted vault storage, local-first synchronization, autofill, and hardware-assisted authentication across web, desktop, mobile, and browser experiences.
Why it exists
ARGA | Pass puts encrypted vault storage and local-first synchronization at the center of credential management, connecting that foundation to device and browser workflows. Its approach brings passwords, autofill, and hardware-assisted access into a coherent cross-device experience. It is in the final stages of its release candidate.
What it covers
The vault approach combines end-to-end encryption with dedicated key-derivation and encrypted-record handling.
Local storage and CRDT-based synchronization coordinate vault information across devices.
Browser and operating-system integrations connect the vault with everyday credential-entry workflows.
Desktop, web, mobile, and browser-extension experiences form the client scope. Ask about the supported clients for your devices.
FIDO2 and platform security hardware form part of the authentication architecture.
The product architecture includes self-hosting and a zero-knowledge relay approach for coordinating access.
Who it's for
People managing credential access across their own devices.
Teams coordinating administrative and enterprise credential workflows.
Operators interested in the relay and hosting architecture.
Current project stage
ARGA | Pass is in the final stages of its release candidate. Discuss supported clients, authentication requirements, and hosting options with the team.
Ask about availability →