📂
Drop files here — or click to browse
ℹ Folder drag-and-drop is not supported by browsers — use the "Add folder" button instead.
No files added
Password
Minimum 8 characters. Enter the password twice to confirm.
Same password is used for encrypt and decrypt.
ℹ The confirm field is only checked during encryption.
▶
Passphrase Generator
Click Generate…
ℹ Using a passphrase sets it in the password field.
Confirm it in the Confirm password field above before encrypting.
▶
Keyfile
⚠ Warning: A keyfile becomes part of your key material.
Losing the keyfile means losing your data.
Store it securely and separately from the encrypted files.
No keyfile selected
Encryption Settings
Metadata is encrypted alongside the payload.
Only compression mode is stored in plaintext in the authenticated header.
Resets all Simple settings above to their defaults
▶
Argon2id Parameters Advanced
⚠ These parameters are stored in the file header.
To decrypt, you must use the same or compatible settings.
detected: thread(s)
▶
Salt & Nonce Advanced
⚠ Security warning: Manual salt/nonce input is dangerous.
Reusing a nonce with the same key exposes your plaintext.
Only use for testing where nonce reuse is acceptable.
▶
Additional Authenticated Data (AAD) Advanced
Extra context string bound to the encryption. Must be re-entered exactly when decrypting.
It is not stored in the file.
▶
Output Format & Checksum Advanced
▶
Processing & Performance Advanced
max RAM for decompression buffer
for Argon2id parallelism cap
▶
Safety & Verification Advanced
Decrypts output in memory to verify integrity. Doubles processing time.
Decryption Options
Overrides the filename from metadata. Useful when metadata is absent or hidden.