Skip to content

SecretML v2.11

Choose a tag to compare

@SecretML SecretML released this 24 Jul 13:52
· 226 commits to main since this release
804a5e3

🆕 What's New in v2.11:

Version 2.11 introduces a new encryption method SHA256 Secure Mode-SML,
a patented encryption system that does not require memorizing a password phrase.

Key features:

  • The encryption process uses both the hash of the file (file_hash) and your answers.

  • Security is independent of the question length — without the core (file_hash), brute-force is impossible.

  • file_hash is stored in the ZIP archive comment as a separate key in the format SHA256:.

  • Think of the JSON file as the key and the archive comment as the lock's core — without the core, the lock cannot be opened.

  • All data is securely locked: having the JSON and archive without the core is useless.

  • You can split the key and the core between different people for extra security.

  • Plausible deniability: just remove the archive comment, and the core is irreversibly lost.

  • The key and archive can be stored together without risk, as long as the file_hash is missing.

  • The final key for the archive is generated as:
    final_key = SHA256(SHA256(answer1 + file_hash) + SHA256(answer2+ file_hash) + SHA256(answer3+ file_hash) + ...).

SHA256 Secure Mode Security Assessment
The SHA256 Secure Mode method combines AES-256-CBC and SHA-256, providing multi-layer protection. The final key is derived from the file hash (file_hash) and the user's answers, making brute-forcing the key virtually impossible without both components.

Thanks to its unique structure (combining answer1 + file_hash and an additional "payload"), this method resembles split knowledge schemes but has no direct analogs among common solutions.

With properly chosen answers (strong passwords), the method offers a high level of cryptographic security and additional features, such as plausible deniability by removing the archive's comment.

📸 Interface Preview

v2 11