Local by default
Your vault is stored in app-private device storage and remains usable without a vendor account.
Android privacy vault
Keep photos, videos, documents, audio, and secure notes encrypted on your device, with no account required.
Product artwork DeadKey interface and product overview.
Product experience
These product visuals show DeadKey’s interface and current feature set. Security claims are described separately below.
Privacy built for real life. Image 1 of 4.
Why DeadKey
DeadKey keeps your vault on your device by default. Optional services are used only when you choose them.
Your vault is stored in app-private device storage and remains usable without a vendor account.
Vault browsing, encryption, decryption, search, and local backup do not require a server connection.
The current Google Play listing states that DeadKey does not use analytics, behavioral tracking, advertising, or data collection.
Encrypted backups go only to a device folder or provider you select.
Security and access
DeadKey encrypts vault items with AES-256-GCM. An Argon2id-derived PIN key protects the vault key. Optional platform biometrics are available after setup.
These protections operate at the application layer. DeadKey has not undergone an independent security audit and does not claim universal forensic resistance or guaranteed erasure under every storage condition.
Each imported vault object is protected with authenticated encryption.
Argon2id derives a key from your PIN that is used to encrypt the vault key stored by the app.
Enable biometric unlock from Settings after the vault has been created with a PIN.
DeadKey locks after the configured timeout and blocks screenshots in app windows.
Everyday use
DeadKey combines encrypted storage with practical tools for finding and managing private material without sending it to a search service.
Keep photos, videos, documents, audio, and encrypted notes in one local vault.
Group related material and use folder covers to make a larger vault easier to scan.
Search, filter, and sort while the vault is unlocked, without a remote index.
Preview supported images and text inside the application without exporting plaintext files.
Advanced privacy controls
Enable only the controls that fit your needs. Destructive options should be configured carefully and tested with a verified encrypted backup.
The main vault holds the files and notes you choose to protect.
An optional separate PIN opens an isolated decoy experience with its own content.
A separately configured wipe PIN deletes the primary vault state and opens the decoy vault.
Change the app’s launcher name and icon among supported appearances, then switch back to DeadKey when needed.
These features operate at the application layer and should not be interpreted as guaranteed protection against every forensic technique.
Local-first architecture
How DeadKey keeps vault access, encrypted storage, and optional backup under your control.
You control the credential used to open the vault.
Primary vault content remains in app-private storage.
Choose device storage, Google Drive, or Dropbox when you want an external copy.
Korelis Labs does not host your vault, receive your vault contents, or provide a vendor password-recovery path.
Backup and recovery
DeadKey is local-first. When you enable backup, the encrypted package goes to a location you select rather than a Korelis Labs vault service.
Select a local folder or connect a supported provider. DeadKey encrypts the backup before transfer.
Korelis Labs cannot reset your vault secret. Restore is designed for an empty or reset app, not for merging into an existing vault.
Availability

Version 0.1.29, updated July 26, 2026.
Price, version, and availability may vary by region and time.