Security Tools
Encrypt & decrypt.
Password-protect text or a file with AES-256-GCM, derived from your passphrase with PBKDF2 at 600,000 iterations — the current OWASP-recommended minimum. Everything runs locally via the browser's Web Crypto API; nothing is uploaded.
Input
Result
Enter text or a file, a passphrase, then press Encrypt.
How it works
- AES-256-GCM: an authenticated cipher — it detects tampering or a wrong passphrase and refuses to produce output, rather than silently returning garbage.
- PBKDF2-HMAC-SHA256, 600,000 iterations: the passphrase is stretched into a key using OWASP's current recommended minimum iteration count for PBKDF2-HMAC-SHA256 (Password Storage Cheat Sheet), with a fresh random salt and IV every time you encrypt — so encrypting the same text twice produces two different outputs.
- Self-contained output: the encrypted text (or file) carries its own salt and IV, so decrypting only needs the output plus your passphrase.
- Fully local: built on the browser's native Web Crypto API (
crypto.subtle). No text, file, or passphrase is sent anywhere; verified before shipping with round-trip tests, plus checks that a wrong passphrase and a tampered ciphertext are both correctly rejected rather than silently accepted.