DRIVUNO Secrets

Your passwords, sealed by the same keys as your files.

A password manager inside your encrypted vault — no second subscription, no second provider, no second company that could be breached.

A vault that also holds the keys to everything else you own.

For people and teams who already trust drivuno with their files and want credentials, api keys and recovery codes under the same zero-knowledge architecture.

Built for confidentiality

Sealed credential items

Logins, cards, identities, API keys and secure notes are encrypted on your device before they ever reach a server.

PIN and biometric unlock

Open Secrets with a separate PIN or Face ID / Touch ID, with lockout after repeated failures and automatic wipe of the in-memory key.

Import in two minutes

Direct import from 1Password, Bitwarden, LastPass and NordPass exports — parsed and encrypted entirely in your browser.

Custom fields, your types

Add any field and choose how it behaves: hidden, plain text, URL, TOTP seed or multiline note.

Encrypted attachments

Attach recovery sheets, certificates or licence files directly to a secret; they inherit the same sealed key.

Shared with the right people only

Share a secret with a teammate through per-recipient X25519 key wrapping; removing access rotates the item key.

Why the password manager belongs in the vault

Splitting credentials across another SaaS provider multiplies the number of companies that can be compromised, subpoenaed, or simply shut down. DRIVUNO Secrets uses the account key you already hold, so there is nothing extra to trust.

What the server stores

An opaque ciphertext blob per item, its blind-index tags for search, timestamps and the sealed key copies for each authorised member. Not the site, not the username, not the password.

Leaving is as easy as arriving

Everything can be exported in the clear from your own device whenever you want. Zero-knowledge should never mean lock-in.

Frequently asked questions

Can DRIVUNO read this content?

+

No. Passwords, emails, documents and search indexes are encrypted on your device with XChaCha20-Poly1305. Keys are derived locally from your password with Argon2id and wrapped per member with X25519. Servers store ciphertext only.

How does search work if everything is encrypted?

+

DRIVUNO uses blind indexes: your device computes HMAC tags for names, subjects and fields, and the server matches tags without ever seeing plaintext. Results are decrypted in your browser.

Is there a free plan?

+

Yes. The free plan includes 1 GB with the same zero-knowledge architecture — encrypted drive, Rooms, mail, secrets, docs and search.

What happens if I lose my password?

+

Because we cannot read your data, we cannot reset it. Create a Recovery Kit (printable PDF with QR) and store it offline. Without your password or recovery key, encrypted data cannot be recovered — by design.

Do you scan content for AI or advertising?

+

No. DRIVUNO has no advertising business, performs no content analysis, and cannot train models on data it is unable to decrypt.

Related

Your sensitive files deserve more than a traditional cloud.

Start free with 1 GB. Zero-knowledge encryption from the first upload — no admin override, no AI scanning, no plaintext on the server.

1 GBfree vault
Encrypted on your device · upload in 1 click
Upload