monopass is a local-first password manager and credential storage daemon that stores data securely on your machine, protected with AES-256-GCM encryption.
- Bank-grade security: Secure local data using AES-256-GCM encryption and PBKDF2 key derivation (256,000 iterations).
- Single-binary installation: Run instantly on Linux and macOS with a single, dependency-free executable.
- Seamless sharing: Share credentials effortlessly with other users via
monopass share. - Built-in TOTP: Store and generate TOTP codes directly, replacing standalone authenticator apps.
- Automatic session caching: Prevent repeated password prompts. Enter your master password once, and the requesting process chain is trusted for 15 minutes (configurable).
- CLI-native: Automate workflows easily by integrating the command-line interface directly into your scripts.
- Credential daemon: Integrate any application via the API, bypassing the need for native system keyrings.
Use the commands below to get started, which will install monopass, configure shell completions, initialize your password vault, and auto-start the password agent.
curl -fsSL https://raw.githubusercontent.com/supriyo-biswas/monopass/master/install.sh | sh
monopass initAnd then, add your first password and retrieve it:
monopass add Personal/GitHub --username my-username --password
monopass ls
monopass ls Personal
monopass show Personal/GitHub --reveal- Getting started
- Creating and editing directories and items
- Listing, moving, deleting and versioning items
- Secure access to your vault
- Sharing items
- Connect existing tools
.envfiles and references- Use the local agent API
- Using monopass as a git credential cache
- Using monopass to store Ansible vault passwords
- Supply AWS CLI credentials from monopass
This project is licensed under the MIT license. See the LICENSE file for details.