{"repo":"PWDSafe/PWDSafe","free":true,"listed":false,"github":"https://github.com/PWDSafe/PWDSafe","clone":"git clone https://github.com/PWDSafe/PWDSafe.git","description":"Self-hosted web-based password manager with OIDC & LDAP/active directory support","language":"PHP","stars":13,"topics":[],"license":null,"category":"self-hosted-apps","readme_excerpt":"PWDSafe ======= PWDSafe is a self-hosted, zero-knowledge password manager. It lets you and your team store, organize and share credentials, while keeping the server unable to read your passwords or private keys. Users can authenticate with a local account, LDAP / Active Directory, or OIDC. Screenshots ----------- Safe Credential view Shared group Two-factor setup --- --- --- --- PWDSafe also supports dark mode, following your system preference: Features -------- - Zero-knowledge, client-side encrypted safe for your personal credentials - Organize credentials into groups and subgroups, with shared groups for teams - Share individual credentials with other users or via temporary public links - Search across your safe - Two-factor authentication (TOTP) - Local accounts, LDAP / Active Directory, or OIDC login - Built-in security check that flags reused passwords across your credentials - REST API for the browser extension and other clients - Admin panel for user and authentication management Zero-knowledge encryption -------------------------- PWDSafe is built so that the server never has access to your plaintext passwords or encryption keys. When you register, your browser generates an RSA-4096 key pair. The private key is encrypted with a vault key that is derived from your password using PBKDF2-SHA256 (600,000 iterations) and stored encrypted with AES-256-GCM — only the encrypted blob is ever sent to the server. Your credentials are encrypted client-side the same way: each cre","default_branch":null,"files":null,"tree":[],"storefront":"/r/PWDSafe","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/PWDSafe/PWDSafe/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}