Your passwords, sealed by the same keys as your files.
A password manager inside your encrypted vault — no second subscription, no second provider, no second company that could be breached.
“A vault that also holds the keys to everything else you own.”
For people and teams who already trust drivuno with their files and want credentials, api keys and recovery codes under the same zero-knowledge architecture.
Built for confidentiality
Sealed credential items
Logins, cards, identities, API keys and secure notes are encrypted on your device before they ever reach a server.
PIN and biometric unlock
Open Secrets with a separate PIN or Face ID / Touch ID, with lockout after repeated failures and automatic wipe of the in-memory key.
Import in two minutes
Direct import from 1Password, Bitwarden, LastPass and NordPass exports — parsed and encrypted entirely in your browser.
Custom fields, your types
Add any field and choose how it behaves: hidden, plain text, URL, TOTP seed or multiline note.
Encrypted attachments
Attach recovery sheets, certificates or licence files directly to a secret; they inherit the same sealed key.
Shared with the right people only
Share a secret with a teammate through per-recipient X25519 key wrapping; removing access rotates the item key.
Why the password manager belongs in the vault
Splitting credentials across another SaaS provider multiplies the number of companies that can be compromised, subpoenaed, or simply shut down. DRIVUNO Secrets uses the account key you already hold, so there is nothing extra to trust.
What the server stores
An opaque ciphertext blob per item, its blind-index tags for search, timestamps and the sealed key copies for each authorised member. Not the site, not the username, not the password.
Leaving is as easy as arriving
Everything can be exported in the clear from your own device whenever you want. Zero-knowledge should never mean lock-in.
Frequently asked questions
Can DRIVUNO read this content?
+
No. Passwords, emails, documents and search indexes are encrypted on your device with XChaCha20-Poly1305. Keys are derived locally from your password with Argon2id and wrapped per member with X25519. Servers store ciphertext only.
How does search work if everything is encrypted?
+
DRIVUNO uses blind indexes: your device computes HMAC tags for names, subjects and fields, and the server matches tags without ever seeing plaintext. Results are decrypted in your browser.
Is there a free plan?
+
Yes. The free plan includes 1 GB with the same zero-knowledge architecture — encrypted drive, Rooms, mail, secrets, docs and search.
What happens if I lose my password?
+
Because we cannot read your data, we cannot reset it. Create a Recovery Kit (printable PDF with QR) and store it offline. Without your password or recovery key, encrypted data cannot be recovered — by design.
Do you scan content for AI or advertising?
+
No. DRIVUNO has no advertising business, performs no content analysis, and cannot train models on data it is unable to decrypt.