Starkive StudioAuthenticator

Your 2FA codes, in the vault that guards them.

  • TOTP · RFC-6238
  • Sealed in the vault
  • On-device

Keep your two-factor secrets next to the passwords they protect. Codes are generated on your device to the TOTP standard, sealed by the same Argon2id and AES-256 vault, and unlocked with Windows Hello or Touch ID.

The authenticator is part of the $1.99 unlock, inside the Vault.

01

What it does.

  1. 01

    Standard TOTP

    Generates the same time-based six-digit codes (RFC-6238) as any authenticator app, for any service that offers 2FA.

  2. 02

    Guarded by the vault

    Your 2FA secrets are stored in the zero-knowledge vault, sealed with AES-256 and derived with Argon2id — not sitting in the clear.

  3. 03

    Next to the login it protects

    Keep the code beside the password for the same account, so signing in is one place instead of two apps.

  4. 04

    On your device

    Codes are computed locally from a secret only you can unlock. Nothing is sent to a server.

How the zero-knowledge vault works

02

The others come with it.

One app, one $1.99 unlock. These are not add-ons and there is no upgrade path between them — you either have Studio or you do not.

Starkive Archive

Lock a file or folder with strong encryption — a password ZIP, a 7-Zip archive, age, or OpenPGP. It reads 13 archive formats too, so it is the only unzip tool you need as well.

Starkive PDF

A PDF is a program format, and opening one is where most of the risk in a document workflow actually sits. Starkive decodes every file in a separate process that cannot reach the network, read your files or start anything. Above that line it behaves like the desktop editor you already know.

Starkive Vault

One master password you choose, never stored and never sent. Every record is sealed on your own machine, so there is no account to breach and nothing in a cloud to leak.

Redaction

Mark the words you want removed and Starkive deletes the content underneath rather than painting a rectangle over it. It runs on your machine, in the same sandbox as everything else, and writes a new file so your original is never touched.

Trust Split

Break a passphrase, recovery phrase or exported key into shares using Shamir's Secret Sharing. You choose how many shares exist and how many are needed to rebuild it; anything fewer reveals nothing at all. It runs entirely on your machine.

Back to Starkive Studio, or see both products.