Multi-Layer Encryption

Multi-Layer Encryption

Multi-level encryption starts with client-side encryption for vault data, followed by transport and storage encryption.

Open Source

Open Source

The complete codebase can be audited publicly. Security comes from proper encryption, not from hiding security flaws.

Self-Hosted

Self-Hosted

A self-hosted credential manager lets you run the server yourself and gives you greater control over access. It also eliminates the need to rely on public services for your data.

A LIST OF ALL OUR FEATURES

What Psono offers users.

Client-Side Encryption

before the data leaves your device

Server Pinning

of the server's key

Multilayer Transport Encryption

with TLS 1.2 and Salsa20

Autofill

of all login forms

Encryption at Rest

of all sensitive information

Basic Auth

is handled automatically

Password Syncing

across all devices

Password Sharing

securely between users

Multi-Account Support

for websites and applications

Password Generator

generates random passwords similar to those from our online password generator

Security Report

to audit your passwords, age, complexity and length

Secure Notes

to store other information

Bookmarks

for quick access to useful links

Password Capture

captures existing passwords automatically

Mobile Support

with a responsive design and apps for Android and iOS

Password Export

for all stored secrets

Copy to Clipboard

also supports use with desktop applications

Password Import

for Chrome passwords and other password managers

Groups

of users and shares for RBAC

Access Control

Restricts permissions on shared items.

PGP Encryption

encrypts and decrypts PGP messages

PGP Mail Provider Integration

encrypts and decrypts Gmail, Outlook.com, and Yahoo Mail messages

Offline Mode

access your passwords even offline

API Keys

allow the integration of passwords in build pipelines or startup scripts.

Callbacks

sends callbacks to specific URLs when a secret changes, triggering automated actions such as restarting a service

Emergency Codes

helps manage digital assets in an emergency or after a death

History of secrets

Old versions of secrets (e.g. passwords) are stored and are accessible in the history

Broad language support

Psono is available in many languages.

File Sharing

with client-side file encryption

High Availability

All components can be configured for high availability

Easy integration

Scriptable integration of secrets into your infrastructure

Site-Affine File Storage

IP-based routing enables site-affine storage access, remote-office deployments, and hybrid-cloud setups

Link Shares

Share secrets and files via link with others, even if they don't have an account

Multiple storage backends

Supports local storage, GCP, AWS, and Azure for client-side-encrypted files

Password Breach Detection

Detects if a password has been part of a known breach

Enterprise Features

Features available exclusively in our Enterprise Edition (EE)

LDAP & SAML & OIDC SSO Integration

Authenticate against your company's LDAP Server, SAML or OIDC IDP. Change passwords, manage email addresses and deactivate users in a central place.

Audit Logging

Are compliance and auditing capabilities among your company’s security priorities? This feature lets you trace every REST call.

Policies & Compliance Enforcement

Enforce rules for your users, such as requiring two-factor authentication or disabling features such as exports, emergency codes, and recovery codes.

Psono Gateway

Launch browser-based SSH, RDP, and VNC sessions directly from connection entries. Control access with Gateway clusters while credentials remain encrypted during the one-time launch handoff.