Software:KeePassDX
| Developer(s) | Kunzisoft |
|---|---|
| Initial release | November 17, 2017 |
| Written in | Kotlin, Java, C |
| Operating system | Android |
| Available in | Multilingual |
| Type | Password manager |
| License | GPL-3.0-or-later |
| Website | www |
KeePassDX is a free and open-source offline password manager designed for Android. Developed and maintained by Kunzisoft, the software operates locally without built-in network permissions, relying on external synchronization tools for cross-device database management.[1]
KeePassDX natively supports legacy KeePass 1 (.kdb) files alongside current KeePass 2.x (.kdbx) implementations. This makes it cross-compatible with desktop clients like the original KeePass[2] and KeePassXC.
Features
KeePassDX is written in Kotlin, Java, and C, and uses standard encryption methods to secure vaults, including AES-256, Twofish, and ChaCha20, combined with the Argon2 key derivation function to guard against brute-force attacks.
Key features include:
- Advanced Authentication Security: Support for alternative database locking options beyond standard master passphrases, including cryptographic key files and YubiKey hardware-backed challenge-response protocols.[3]
- Magikeyboard: A virtual keyboard implementation that allows users to input login credentials directly into target text fields. This mechanism bypasses the native Android system clipboard entirely to protect data from clipboard-sniffing malware.[4]
- Passphrase Generation: A built-in generation utility integrating the Electronic Frontier Foundation (EFF) long wordlist to construct secure, multi-word passphrases locally.[5]
- Biometric Authentication: Integration with native device hardware, such as fingerprint scanning and facial recognition, allowing users to securely unlock local database files without re-entering the master password.[4]
- Two-Factor Authentication: Integrated support for generating TOTP and HOTP tokens directly within credential entries.[4]
- Database Versatility: Ability to read, modify, and convert KeePass database versions 1 (.kdb) and 2 (.kdbx).[2]
Security and privacy
KeePassDX requires no internet permissions in its manifest file, making it incapable of network telemetry or remote data transmission.[1] Mobile tracker audits conducted by Exodus Privacy verified that the codebase contains zero third-party tracking scripts, analytical software development kits, or advertising packages.[6][7]
See also
References
- ↑ 1.0 1.1 Rutnik, Mitja (October 28, 2025). "Don't trust big tech? These are the 5 offline-first apps I recommend". https://www.androidauthority.com/offline-first-apps-i-recommend-3610228/.
- ↑ 2.0 2.1 Vonau, Manuel (November 23, 2023). "Best password managers". https://www.androidpolice.com/best-password-managers/.
- ↑ "Yubikey: Use for KeepassXC and KeepassDX #1480". January 12, 2023. https://github.com/Kunzisoft/KeePassDX/issues/1480.
- ↑ 4.0 4.1 4.2 Kuketz, Mike (February 2021). "KeePassDX: Magikeyboard und Autofill im Android-Alltag nutzen (Passwörter Teil 2)" (in de). https://www.kuketz-blog.de/keepassdx-magikeyboard-und-autofill-im-android-alltag-nutzen-passwoerter-teil2/.
- ↑ "Add mnemonics to generator #218". December 15, 2018. https://github.com/Kunzisoft/KeePassDX/issues/218.
- ↑ "Report for com.kunzisoft.keepass.free". January 16, 2026. https://reports.exodus-privacy.eu.org/en/reports/com.kunzisoft.keepass.free/latest/.
- ↑ Vonau, Manuel (February 26, 2021). "LastPass analytics code raises questions about potential security issues". https://www.androidpolice.com/2021/02/26/lastpass-analytics-code-raises-questions-about-potential-security-issues/.
External links
