NettForge's safety doesn't rest on a privacy policy or a promise to behave. It rests on cryptography that runs on your device — and a design where any server only ever holds locked boxes it cannot open.
Your master password derives the key on-device. We never receive it, never store it, and could never recover it. There's simply nothing on our side to leak.
AES-256-GCM with a fresh random IV on every save, keys derived with Argon2id (64 MiB memory · t=3 · p=4) over a per-vault random salt.
Nothing in NettForge talks to the internet. No sync servers, no analytics, no update pings. Disconnect entirely and it works exactly the same.
Every time your vault changes, NettForge re-seals it from scratch. Your key never touches the disk — only the encrypted blob does, and it's meaningless without your master password.
They get ciphertext and nothing else. Without your master password, brute-forcing Argon2id over AES-256-GCM is not a weekend project — memory-hard derivation makes it not a lifetime one either.
Not your problem — there's no NettForge cloud holding your data. Nothing to breach, nothing to subpoena, nothing to sell.
Even we can't read your vault. Zero-knowledge means the plaintext never exists anywhere but in your unlocked session, on your device.
NettForge doesn't use the network at all. There's no request to intercept, no token to steal, no endpoint to attack.
Included as they ship for Personal and Family subscribers.
Unlock with a passkey or a YubiKey — a physical second factor, verified on your device.
Optional two-factor step before your vault opens.
Store TOTP seeds and show live one-time codes inside each entry.
Roll back to previous secrets and keep an audit of changes.
No server, no middle-man, no master key but yours. Start forging your vault today.