A feature of LMN8

Unreadable to everyone, except you.

Encrypt turns a folder into a secure vault, right where it already lives. No cloud upload, no copy made. Seven cipher suites to choose from, a key derived on your device that we never see, and even the file names sealed away.

lmn8/ encrypt
secured
Personal vault
12 files · AES-256-GCM
1488ccbb0fc35ff12ba54b6bfb9bbadf64fd3917cde18989b24e
Client contracts
47 files · Triple-Hybrid
d24bc5cf3db37cc97569a1775cf65e4773a3d5cae5ca534a62dd
Journal
3 files · open
Smart access · one vault, three keys
Opens the real vault — your files, exactly as you left them.
Seven cipher suites · keys never leave your device.
Using Encrypt

Protect, in three calm steps.

Encrypt is built so the private option is always the easy one — no manuals required.

1
Choose a folder

Turn any folder into an in-place vault. Nothing is uploaded, nothing is copied.

2
Pick a cipher suite

One of seven AEAD suites — or stack three in a triple-hybrid for defense in depth.

3
Set smart passwords

Up to three: one opens the real vault, one a decoy, one quietly destroys it.

Smart encryption

One vault. Three passwords.

Set up to three passwords for the same vault. Which one you type decides what happens — so a forced unlock never has to reveal what actually matters.

Password 1
Read

Your real password. Opens the vault and shows your files, exactly as you left them.

Password 2
Decoy

Opens a believable decoy folder you set up in advance. Plausible deniability when someone’s watching.

Password 3
Destroy

Looks like a normal unlock, but silently runs a Zero wipe of the vault. The wrong hands become a kill switch.

What Encrypt does

Your files. Your keys.

/01
In-place vaults

Encrypt folders where they already live. Nothing is uploaded and no plaintext copy is left behind.

/02
Seven cipher suites

AES-256-GCM, ChaCha20-Poly1305, XChaCha20, AES-GCM-SIV, a combined AEAD mode, and a compressed AES variant.

/03
Triple-layer hybrid

Stack AES, ChaCha20, and XChaCha20 in one pass when you want belt, braces, and a spare.

/04
Keys we never see

Derived on your device with Argon2id (64 MB, memory-hard). Nothing to escrow, sync, or hand over.

/05
Names stay private

File names, extensions, and structure are scrambled and mapped under encryption. An adversary sees opaque blobs.

/06
Post-quantum, rolling out

Quantum-resistant options are being added to the suite, so today’s vaults stay sealed against tomorrow’s computers.

Availability

Wherever your data lives.

Encrypt comes with LMN8 — one account that reaches every device you own.

Windows● Available now
Android● Available now
macOS○ Coming soon
iOS○ Coming soon
Questions

More about Encrypt.

You can set up to three passwords for one vault. The Read password opens the real files, the Decoy password opens a harmless folder you set up in advance, and the Destroy password silently runs a Zero wipe of the vault.

Because keys are derived on your device and never escrowed, we can’t reset it for you — that’s what makes it secure. Set up a recovery option when you create a vault.

Yes — seven AEAD cipher suites including AES-256-GCM and ChaCha20-Poly1305, with Argon2id key derivation. Stack three in a triple-hybrid for the most sensitive vaults.

Your files. Your keys.