Local-first authenticator

Your codes.
Your device.

A focused TOTP authenticator for Chrome and Edge. Your accounts stay encrypted inside your browser profile—without a server account or cloud connection.

  • No telemetry
  • No advertising
  • No remote code
TOTP Vault extension showing encrypted authenticator accounts
Encrypted locally
6-digit TOTP

A quieter security model

The best place for your authentication secrets is the place you control.

TOTP Vault keeps its scope deliberately narrow: manage TOTP accounts, generate codes, and help you import them safely. Nothing more is silently happening in the background.

Purposefully minimal

Everything needed.
Nothing watching.

A clear, local workflow from encrypted account storage to the code you need right now.

01

Encrypted by default

Your vault is encrypted before it reaches browser extension storage.

02

No cloud account

No sync server, telemetry, advertising, analytics, or developer access.

03

Intentional imports

Import standard otpauth URIs or scan a visible QR only after an explicit click.

04

Copy only on request

TOTP Vault writes a code when you ask. It never reads or monitors your clipboard.

Transparent by design

Local-first is a promise
you can inspect.

Master passwords, one-time codes, and page screenshots are not persisted or uploaded. Vault records are encrypted before storage. We explain every permission and data flow in plain language.