MystSafe overview

Secure by default

No master password. Your devices hold the keys.

MystSafe does not ask you to create or memorize a master password. Each trusted device creates its own cryptographic keys, protects stored key material with operating-system security, and uses local authentication to authorize access.

Device-bound access

Your device unlocks its own encrypted vault.

Local authentication approves access to protected key material on that device. Face ID, Touch ID, a device passcode, or macOS authentication authorizes the action; biometrics never become cryptographic keys.

Independent device keys

Every trusted device creates its own encryption and signing keys. Existing private device keys are not copied when another device is paired.

Operating-system protection

Apple Keychain policy protects stored key material, using hardware-backed protection where the platform makes it available.

Local authorization

Your device confirms local user presence before protected vault actions. MystSafe has no master password to receive, store, reset, or recover.

Start without a master password

Create your vault on a trusted device and let local authentication authorize access.