Encrypted on your device first
Your vault is sealed with keys derived from your master password before any optional sync. We never receive that master password, so we cannot open your vault for you or for anyone else.


A private vault for logins, cards, bank details, one-time codes, and secure notes on iPhone, iPad, and Mac.






Built for people on Apple devices who want a fuller private vault than system credential storage alone: cards and bank fields next to logins, codes and notes in the same place, and encryption you can explain in plain language.
Zen Passwords is designed for a single task and finished properly. Here is what that means in practice.
Your vault is sealed with keys derived from your master password before any optional sync. We never receive that master password, so we cannot open your vault for you or for anyone else.
Seven kinds of thing live in the vault: web logins, payment cards, identities and documents, bank details, secure notes, Wi-Fi, and software licences. Passkeys and one-time codes sit inside the login they belong to, and you can attach photos to any entry, encrypted with it.
Optional sync uses your private iCloud (CloudKit) under your Apple ID. There is no Zen Passwords account and no publisher-hosted vault server. Leave sync off and everything stays on the device.
Use up to five active items for free, then unlock unlimited items with Zen Premium if you need it. Apple shows price and billing before you buy.
Turn Zen Passwords on as your AutoFill provider and it offers your logins in Safari and in other apps, on iPhone, iPad and Mac. It fills one-time codes so you are not copying them across, signs you in with passkeys, and offers to save a new password when you create one. A code shown next to a login carries a reminder to enter it only on the real site, because a convincing fake page can take it from you. It asks you to unlock first. The same settings offer optional read-only access for an Apple Watch and for widgets, if you want a login on your wrist without opening the app.
Face ID, Touch ID or Optic ID unlock is optional on supported devices. Turn it on for speed, or leave it off and open the vault with your master password.
Password health counts what you have been breached in, what you have reused, what is too weak, and what you have not changed in over a year. Reuse is found by comparing hashes, and every check runs on the device, so nothing about your passwords is sent anywhere to be graded.
Save a recovery key yourself, or use social recovery and split it across people you trust, so no single one of them can open your vault but together they can help you back in. Losing a master password does not have to mean losing the vault.
Export an encrypted backup whenever you like, or set one to run on a schedule into a folder you choose. The history lists every backup by date, destination and how many items it held.
The clipboard clears itself less than a minute after you copy something, the vault locks itself after a few idle minutes, and website icons are only fetched if you say so. A security log records what happened and confirms it has not been tampered with.
Six light and eleven dark, or follow the system setting, so the vault looks like it belongs on your phone rather than like something bolted on.
There are no ads in the app and no business model that depends on your data. You pay for the app, if you choose to, rather than with what you store in it.
You remember one master password. The vault holds the rest. We designed it so zenproducts cannot read what you save.
Most apps ask for everything at launch and explain nothing. We ask for a permission where the feature lives, tell you what it unlocks, and keep the app working if you decline.
Open the app and use it. No account, no email, no verification step before you can do the thing you came to do.
A permission request appears next to the feature that needs it, in plain language, at the moment you reach for that feature.
Decline and the app still does its job in full. Allow it and that one feature does a little more, on your device.
Apple Passwords is strong for everyday Apple logins, passkeys, Wi-Fi, and verification codes. Zen Passwords is a broader vault: payment cards, bank details, secure notes, software licenses, and related fields live next to your logins, with lock and clipboard controls aimed at that fuller set of secrets. Stay with Apple Passwords if system credentials are enough. Choose Zen Passwords if you want those extra item types in one encrypted vault on iPhone, iPad, and Mac.
Yes, on all three devices. Switch Zen Passwords on as an AutoFill provider and your logins are offered in Safari and in other apps the way the built-in ones are, on iPhone, iPad and Mac. It fills one-time codes as well, so you are not copying a code from one app to another, passkeys work for creating and signing in, and it offers to save a new password when you create one. You unlock before anything is filled.
No. There is no Zen account and no sign-up. You create a vault with a master password on your device, and that is the whole setup. If you want the vault on your other devices, optional sync uses the iCloud that comes with your Apple ID, so there is still no account with us.
Zen Passwords includes a free tier with up to five active items, then optional Zen Premium for unlimited items. On the App Store, Apple shows price and billing before you buy.
We cannot reset it for you because we never have a copy. That is intentional: if we cannot open the vault, neither can a stranger who somehow reaches our systems. It does not have to mean losing the vault, though. Save a recovery key somewhere safe, or turn on social recovery, which splits that key across people you trust so no single one of them can open your vault but together they can help you back in. Set one of the two up on the day you create the vault, not the day you need it.
No. Encryption happens on your device. We do not hold your master password, and we do not receive vault contents in a form we can read. Optional sync stores ciphertext in your private iCloud database under your Apple ID.
Yes. Password health counts how many you have reused across sites, how many are too weak, and how many you have not changed in over a year. The checks run on your device against your own vault, so nothing about your passwords is uploaded to be graded and no list of your sites leaves the phone.
Both. You can export an encrypted backup whenever you like or set one to run on a schedule into a folder you choose, and the history lists every backup by date, destination and item count. Coming the other way, you can import from an encrypted Zen backup or from a file exported by another password app.
Yes for day-to-day use on your device. If you turn on sync, iCloud needs a network connection when devices need to catch up.
Read the privacy policy and terms before you install. Stores show any price before you buy.
Honest comparisons, each one naming where the other product wins.
For most people the built-in one is enough. The verdict names the line where it stops being.
Read it1Password wins on breadth. We win in one specific case, and the page says which.
Read itBitwarden is the better default. Here is the narrower case where it is not.
Read itThe handover pages: what exports cleanly, what you re-enter, and what to check before you cancel.
Read it