C-LAB · Tool · encrypted vault
ApiPass
Offline vault · open source · KeePassXC-inspired
Your API keys, encrypted and under your control.
An encrypted vault to store and organize your API keys. It runs 100% on your device, no server, no telemetry, no cloud. AES-256-GCM with an Argon2id-derived master key; the vault file never leaves your machine.
macOS Intel + Apple Silicon · signed & notarized by Apple · free & open source · all downloads
Encrypted & offline
AES-256-GCM, key derived with Argon2id. The vault file stays on your device.
Built for API keys
Group by service, project and environment. Attach files. Search instantly.
Clipboard auto-clear
KeePassXC-style: copies wipe from the clipboard after a few seconds.
Signed & notarized
Developer-ID signed and Apple-notarized, opens with no scary warnings.
Web or desktop
Same code in the browser or as a native app that saves the real file.
Auditable
Open source, no frameworks or CDNs. Verify each download with its SHA-256.
Protects
- A stolen vault file is unreadable without your master password.
- Tampering makes decryption fail, never opens silently altered.
- Nothing crosses the network; works fully offline.
Doesn't
- A compromised device (malware, keylogger) while the vault is open.
- A weak master password against brute force, use a long one.