Zero stored passwords
Login exclusively via Google OAuth and Magic Link by email. We never store passwords or sensitive user credentials.
No passwords AES-256 Encryption TOTP RFC 6238 Multi-platform
Uma conta. Todos os seus dispositivos. Sem barreiras.
No complicated settings. No bureaucracy.
Sign in with Google or request a magic link by email. Zero passwords to remember.
Photograph the QR Code, upload the image, or paste the secret key manually.
Your codes synced in the Chrome extension, Android app, and web panel.
Built for those who don't want to depend on a single device.
Login exclusively via Google OAuth and Magic Link by email. We never store passwords or sensitive user credentials.
One click in the browser toolbar and your code is ready. Reads QR Codes from the screen without leaving the page — ideal for corporate environments.
Each TOTP key is protected with AES-256-CBC before being stored. Even unauthorized database access won't expose your secrets.
Automatic email on every login to your account. You always know when and from where your account was accessed.
Camera, QR Code image upload, or manual Base32 key. Compatible with Google, GitHub, Instagram, banks, and any TOTP service.
Export all your tokens in a file encrypted with your personal recovery key. Only you can open the backup.
iDLock AuthN is a multi-platform 2FA (two-factor) authenticator that stores and generates TOTP codes to protect your online accounts. Unlike other authenticators, your codes stay synced across browser, mobile and web panel — all encrypted with AES-256.
It generates the two-step verification codes (2FA) that sites like Google, GitHub, Instagram and banks require when logging in. With iDLock, you don't depend on a single phone — access your codes from any device, at any time.
Two-factor authentication (2FA) adds a second security layer beyond the password. Even if someone discovers your password, they won't be able to access your account without the temporary code — which changes every 30 seconds and expires immediately after use.
Yes. We use AES-256-CBC encryption for your secret keys, HTTPS communication, protection against major OWASP attacks, and automatic email notification on every login. We do not store user passwords — access is exclusively via Google OAuth or Magic Link.
No. The system works 100% without passwords. You sign in with your Google account or request a magic link by email. The link is unique, cryptographically secure, and expires in 10 minutes.
Understand why a multi-platform solution is more reliable.
| Scenario | Google Authenticator | iDLock AuthN 2FA |
|---|---|---|
| Lost device | ❌ Depends on prior backup | ✅ Access from any device |
| Dead battery | ❌ No temporary access | ✅ Use the Chrome extension or web panel |
| Corporate environment without phone | ❌ Requires mobile device | ✅ Chrome extension directly on computer |
| Device switch | ❌ Manual and laborious process | ✅ Automatic login and sync |
| Data encryption | ⚠️ Local storage in app | ✅ AES-256 on server |
| Access notification | ❌ Not available | ✅ Email on every access |
| Encrypted backup | ❌ Limited export | ✅ .idlock-backup file with your key |