OoKey Password Manager von ngoc.cuong
Zero-knowledge password manager — autofill, password generation, and secure vault access.
Metadaten zur Erweiterung
Screenshots
Über diese Erweiterung
OoKey is a zero-knowledge password manager that lets you securely store and
autofill all your passwords across the web.
━━ Key Features ━━
🔒 True Zero-Knowledge
Your master password, encryption keys, and vault contents are never stored
on OoKey's servers. The server holds only AES-256-GCM ciphertext that
neither we nor any third party can decrypt.
🔑 Strong Cryptography
• KDF: Argon2id (64 MiB, 3 iterations)
• Symmetric encryption: AES-256-GCM
• Authentication: SRP-6a (zero-knowledge password proof)
• Recovery key: BIP-39 24-word mnemonic
⚡ Fast Autofill
OoKey detects login forms automatically and fills your saved credentials with
one click. When you sign in to a new site, an inline save-prompt offers to
add the credentials to your vault.
🛡 Robust Password Generator
Built-in generator with customizable length, character classes, passphrases,
and usernames. Real-time strength indicator and history of recent values.
📊 Security Report
Analyzes your vault for weak passwords, reused passwords, http:// sites, and
items missing 2FA — entirely on-device, with no external API calls.
🌐 Cross-Browser
Works on Chrome, Edge, Firefox, and Safari. Sync your vault across browsers
and devices via your OoKey account.
📤 Data Portability
Full export to JSON / CSV / ZIP. Your data is always yours — move to another
service whenever you want.
🆘 Emergency Access
Designate trusted contacts who can request access to your vault in an
emergency. Two-layer encryption (RSA-OAEP-2048 + AES-256-GCM) ensures only
the authorized contact can decrypt during the takeover window.
📨 OoKey Send
Share passwords or short notes through expiring, encrypted links. Recipients
do not need an OoKey account. Set link TTL and view-count limits.
━━ Privacy & Security ━━
✅ Zero third-party network calls (no HIBP, no analytics, no Sentry)
✅ Servers in AWS Tokyo (ap-northeast-1) — data stays in Japan
✅ TLS 1.2+ enforced, HSTS, SameSite=None; Secure cookies
✅ Refresh-token rotation with reuse detection
✅ Open architecture — see https://ookey.jp/security for the full whitepaper
━━ About the Developer ━━
Developed and operated by GOMOAL Inc. (Tokyo, Japan)
Website: https://ookey.jp
Privacy Policy: https://ookey.jp/#privacy
Terms of Service: https://ookey.jp/#terms
Support: info@gomoal.co.jp
OoKey is built around the conviction that password management should be a
self-contained, transparent experience. With zero-knowledge architecture,
no one — including us — can read your vault.
autofill all your passwords across the web.
━━ Key Features ━━
🔒 True Zero-Knowledge
Your master password, encryption keys, and vault contents are never stored
on OoKey's servers. The server holds only AES-256-GCM ciphertext that
neither we nor any third party can decrypt.
🔑 Strong Cryptography
• KDF: Argon2id (64 MiB, 3 iterations)
• Symmetric encryption: AES-256-GCM
• Authentication: SRP-6a (zero-knowledge password proof)
• Recovery key: BIP-39 24-word mnemonic
⚡ Fast Autofill
OoKey detects login forms automatically and fills your saved credentials with
one click. When you sign in to a new site, an inline save-prompt offers to
add the credentials to your vault.
🛡 Robust Password Generator
Built-in generator with customizable length, character classes, passphrases,
and usernames. Real-time strength indicator and history of recent values.
📊 Security Report
Analyzes your vault for weak passwords, reused passwords, http:// sites, and
items missing 2FA — entirely on-device, with no external API calls.
🌐 Cross-Browser
Works on Chrome, Edge, Firefox, and Safari. Sync your vault across browsers
and devices via your OoKey account.
📤 Data Portability
Full export to JSON / CSV / ZIP. Your data is always yours — move to another
service whenever you want.
🆘 Emergency Access
Designate trusted contacts who can request access to your vault in an
emergency. Two-layer encryption (RSA-OAEP-2048 + AES-256-GCM) ensures only
the authorized contact can decrypt during the takeover window.
📨 OoKey Send
Share passwords or short notes through expiring, encrypted links. Recipients
do not need an OoKey account. Set link TTL and view-count limits.
━━ Privacy & Security ━━
✅ Zero third-party network calls (no HIBP, no analytics, no Sentry)
✅ Servers in AWS Tokyo (ap-northeast-1) — data stays in Japan
✅ TLS 1.2+ enforced, HSTS, SameSite=None; Secure cookies
✅ Refresh-token rotation with reuse detection
✅ Open architecture — see https://ookey.jp/security for the full whitepaper
━━ About the Developer ━━
Developed and operated by GOMOAL Inc. (Tokyo, Japan)
Website: https://ookey.jp
Privacy Policy: https://ookey.jp/#privacy
Terms of Service: https://ookey.jp/#terms
Support: info@gomoal.co.jp
OoKey is built around the conviction that password management should be a
self-contained, transparent experience. With zero-knowledge architecture,
no one — including us — can read your vault.
Bewertet mit 0 von 0 Bewertern
Berechtigungen und Daten
Benötigte Berechtigungen:
- Benachrichtigungen anzeigen
- Auf Ihre Daten für diverse Websites zugreifen
Optionale Berechtigungen:
- Auf Ihre Daten für diverse Websites zugreifen
Erforderliche Datenerfassung nach Angaben des Entwicklers:
- Authentifizierungs-Informationen
- Finanz- und Zahlungsinformationen
- Personenbezogene Daten
Weitere Informationen
- Version
- 0.3.0
- Größe
- 613,13 KB
- Zuletzt aktualisiert
- vor 3 Tagen (21. Juli 2026)
- Verwandte Kategorien
- Lizenz
- Alle Rechte vorbehalten
- Datenschutzrichtlinie
- Lesen Sie die Datenschutzrichtlinie für dieses Add-on
- Versionsgeschichte
- Schlagwörter
- Zur Sammlung hinzufügen
For support, please contact info@gomoal.co.jp or visit https://ookey.jp.
Source code is compiled with Vite + React + TypeScript. Production builds use esbuild minification only (no obfuscation).