The command
Free and open. Create a vault, enroll a key, and keep the recovery code. The source is public, so the lock can be audited.
github.com/deltreexyz/wardletHardware-key encryption for Linux
A FIDO2-compatible key unlocks them. Wardlet does not upload your files, and it does not mount a drive.
See the product Supported devices Download
Vaults and keys work. File encryption is in progress. A packaged download is coming soon.
One way to lock a file. The command is free. A desktop app comes later, and it opens the same files.
Free and open. Create a vault, enroll a key, and keep the recovery code. The source is public, so the lock can be audited.
github.com/deltreexyz/wardletAn encrypted copy sits beside the original. SSH keys, notes, and environment files stay in the directory you chose.
A desktop app for people who do not want a terminal. It is a window onto the same vault. The command remains a way to open the files.
Built for a person with a hardware key, not for a cloud account.
No mounted drive and no container. You delete the plaintext yourself once the ciphertext opens.
YubiKey, Trezor, and other FIDO2 keys. Touch the key. The PIN, when there is one, is the website PIN.
Any enrolled key opens the files. Adding a key does not rewrite them.
The way back in if every key is lost. Wardlet does not keep a copy. Store it in a password manager.
The vault is a directory on your machine. Copying it does not copy a way to open the files.
Files are age ciphertext. You are not locked to a program that only Wardlet can read.
Plug the key in with USB. If it asks for a PIN, that is the same PIN a website asks for.
Lose a key without losing the files. Keep a second key, and a recovery code for the day both are gone.
Wardlet enrolls the first key and shows a recovery code once.
A second key unlocks the same files. The files are not rewritten.
That key is deleted from this vault. An older copy of the vault still opens with it.