Zero stored passwords
Login exclusively via Google OAuth and Magic Link by email. We never store passwords or sensitive user credentials.
No passwords AES-256 Encryption TOTP RFC 6238 Multi-platform
One account. Automatic sync. Access from anywhere.
Your codes one click away, directly in the browser toolbar. Capture QR Codes from screen or upload — without leaving what you're doing.
The authenticator in the palm of your hand. Camera to read QR Codes, native interface and offline access to your codes.
Access all your services directly through the browser, without installing anything. Ideal for corporate environments.
No complicated settings. No bureaucracy.
Sign in with Google or request a magic link by email. Zero passwords to remember.
Photograph the QR Code, upload the image, or paste the secret key manually.
Your codes synced in the Chrome extension, Android app, and web panel.
Built for those who don't want to depend on a single device.
Login exclusively via Google OAuth and Magic Link by email. We never store passwords or sensitive user credentials.
One click in the browser toolbar and your code is ready. Reads QR Codes from the screen without leaving the page — ideal for corporate environments.
Each TOTP key is protected with AES-256-CBC before being stored. Even unauthorized database access won't expose your secrets.
Automatic email on every login to your account. You always know when and from where your account was accessed.
Camera, QR Code image upload, or manual Base32 key. Compatible with Google, GitHub, Instagram, banks, and any TOTP service.
Export all your tokens in a file encrypted with your personal recovery key. Only you can open the backup.
Understand why a multi-platform solution is more reliable.
| Scenario | Google Authenticator | iDLock AuthN 2FA |
|---|---|---|
| Lost device | ❌ Depends on prior backup | ✅ Access from any device |
| Dead battery | ❌ No temporary access | ✅ Use the Chrome extension or web panel |
| Corporate environment without phone | ❌ Requires mobile device | ✅ Chrome extension directly on computer |
| Device switch | ❌ Manual and laborious process | ✅ Automatic login and sync |
| Data encryption | ⚠️ Local storage in app | ✅ AES-256 on server |
| Access notification | ❌ Not available | ✅ Email on every access |
| Encrypted backup | ❌ Limited export | ✅ .idlock-backup file with your key |
Two-factor authentication (2FA) adds a second security layer beyond the password. Even if someone discovers your password, they won't be able to access your account without the temporary code — which changes every 30 seconds and expires immediately after use.
Yes. We use AES-256-CBC encryption for your secret keys, HTTPS communication, protection against major OWASP attacks, and automatic email notification on every login. We do not store user passwords — access is exclusively via Google OAuth or Magic Link.
No. The system works 100% without passwords. You sign in with your Google account or request a magic link by email. The link is unique, cryptographically secure, and expires in 10 minutes.