The enterprise password manager built for zero-tolerance security.
dPass protects your corporate credentials with Argon2 key derivation, hardware passkey support, SSO integration, and breach monitoring — built to hyper-scale with military-grade security.

Security that your credentials deserve
dPass is built for enterprises that cannot afford a breach. Every feature is designed around cryptographic integrity.
Argon2 Key Derivation
Your vault is secured using Argon2id — a memory-hard hashing algorithm with extreme resistance to massive parallel GPU brute-force attacks.
Enterprise SSO Gateway
Integrate dPass with Azure AD, Okta, or Google Workspace via SAML 2.0 and OIDC to enforce RBAC across your entire corporate vault hierarchy.
FIDO2 Hardware Passkey
Eliminate phishing entirely with FIDO2/WebAuthn hardware token support (YubiKey) or biometric local enclave as your primary vault decryption key.
Breach Monitoring
Continuously cross-reference stored credentials against known breach databases. Instantly alert users when a credential appears in a leaked dataset.
Automated Password Rotation
Schedule automatic rotation of shared service account passwords and API keys across your infrastructure — no manual resets required.
Self-Hosted Deployment
Deploy dPass entirely within your own data center using Docker. Your vault data never leaves your infrastructure. Full data sovereignty guaranteed.

Zero-knowledge architecture.
We cannot see your vault. Ever.
Your vault is encrypted client-side before it ever reaches our servers. The encryption key is derived from your master password using Argon2id and never transmitted. Even under subpoena, your credentials remain inaccessible to us.
AES-256 Client-Side Encryption
All vault data is encrypted on your device before transmission. The server stores only ciphertext — never plaintext.
Master Password Never Stored
Your master password is never stored or transmitted. It exists only in memory during an active session, then discarded.
Immutable Audit Log
Every vault access, credential share, and policy change is permanently recorded in a tamper-evident audit trail.
Frequently Asked Questions
How does dPass secure my vault?
dPass uses Argon2id key derivation to protect your master password. This memory-hard algorithm is highly resistant to GPU brute-force attacks. Your vault is encrypted with AES-256 and the key never leaves your device.
Does dPass support hardware security keys?
Yes. dPass supports FIDO2/WebAuthn hardware tokens including YubiKey and biometric local enclaves, completely eliminating phishing attacks as a vector for vault compromise.
Can dPass integrate with our SSO provider?
Yes. dPass integrates with Azure AD, Okta, and Google Workspace via SAML 2.0 and OIDC to enforce RBAC across your entire corporate password vault hierarchy.
Can dPass be self-hosted?
Yes. Enterprise teams can deploy dPass entirely on their own infrastructure using Docker containers, keeping all vault data within their own data center.
Protect every credential in your enterprise
Argon2. FIDO2. Zero-knowledge. Deploy dPass across your entire organization today.