All projects

SailVault: password manager for Sailfish OS

SailVault keeps your passwords in a standard KeePass (KDBX 4) file. No account, no server, no lock-in: the same file opens in KeePassXC on your computer.

Why another password manager

I wanted my passwords on my phone, in a format I control, in an app that runs sandboxed.

What it does

  • Opens KDBX 4.0 and 4.1 databases with a master password, a key file or both
  • Creates, edits, moves and deletes entries and groups, with entry history and a recycle bin as in KeePassXC
  • Adds older KDBX 3.1 databases by storing them as KDBX 4 with Argon2id; the original file stays unchanged
  • Syncs with your own Nextcloud and merges changes made on both sides, the way KeePassXC does
  • Imports Bitwarden and Vaultwarden JSON exports
  • Clears the clipboard after 30 seconds and locks after five minutes without use

It deliberately does not generate TOTP codes, unlock with the fingerprint reader or autofill. The README explains why.

Security

SailVault connects to nothing but your own Nextcloud, and only once you set up sync. It never writes decrypted data to disk. The threat model describes what it protects against and where its limits are. Please report vulnerabilities privately as described in SECURITY.md.

Status and install

SailVault is written for Sailfish OS 5.2 and tested on the Jolla Phone. It is submitted to the Jolla Store (Harbour) and waits for review. Until it is available there, you can build the RPM yourself as described in the README.

Contributing

Bug reports and ideas are welcome as issues. If you plan a pull request, please open an issue first. Never attach a real database or export, not even an encrypted one.

Screenshots

  • Entry list with groups and entries
  • An entry with its password hidden
  • Settings with sync, merge and import

Devlog