5 items
Secure 2FA authenticator. Generates TOTP/HOTP codes from an AES-256-GCM encrypted local vault. 100% private & client-side. A TOTP/HOTP authenticator extension for Chrome that generates two-factor codes from an encrypted authenticator vault — no account required, no cloud sync, no third-party server involved. Your codes are protected by a master password you set, and the vault stays local to your browser. Multiple ways to add an account Every service handles 2FA setup a little differently, so this local 2FA authenticator covers the common paths: Scan a QR code straight from the current tab Upload a QR code image if you have one saved Paste an otpauth:// URI directly when a service provides one instead of a QR code Enter details manually — issuer, account label, Base32 secret key — with a TOTP/HOTP toggle and advanced options for non-standard setups Import existing accounts from a JSON file (encrypted export or plain) AES-256 encrypted, offline by design This isn't an authenticator that phones home. The AES-256 encrypted vault lives on your device, locked behind your master password until you choose to unlock it. Secret keys are parsed and validated locally the moment you add an account — there's no login screen, no email signup, and no cloud account standing between you and your codes. If you're looking for an offline authenticator that doesn't ask you to trust a remote server with your secrets, this is built around exactly that. Day-to-day use Once your accounts are in the vault, the main view shows each one with a live, rotating code and a countdown timer. A one-click copy button sits next to every code, and a search bar lets you jump straight to the account you need — handy if you're managing 2FA across a long list of work and personal logins. Who this fits Anyone using two-factor authentication for GitHub, email, cloud services, or work tools who wants a password-protected authenticator they control directly, rather than one tied to a corporate account or a phone that isn't always within reach. On permissions and data As a client-side 2FA tool, this extension only requests what it needs to read QR codes on the page you're viewing and manage your local vault — nothing more. It doesn't touch unrelated browsing history or site data. Full detail is on the Privacy Policy page linked from this listing. Two-factor authentication is only as strong as how you store the codes behind it. This extension keeps that storage encrypted, local, and under your control.
Sep 11, 2026
rating_count is the Chrome Web Store ratings count, not a written-review count.
Media assets
Screenshots and videos on the listing.
Has promo video
Whether the listing includes at least one video.
Languages
Declared language locales.
Developer website
Listing exposes a developer website URL.
Contact email
Listing exposes a contact email.
Keyword in name
Case-insensitive substring match in the name.
Keyword in description
Case-insensitive substring match in the description.
Keyword occurrences in description
Count of case-insensitive occurrences in the description.
Category user-count percentile
Share of same-category extensions with fewer users (null if unknown).
These are transparent listing completeness / keyword signals, not a prediction of Chrome Web Store search ranking.