Repository navigation
SecretML v2.11
🆕 What's New in v2.11:
Version 2.11 introduces a new encryption method SHA256 Secure Mode-SML,
a patented encryption system that does not require memorizing a password phrase.
Key features:
-
The encryption process uses both the hash of the file (
file_hash) and your answers. -
Security is independent of the question length — without the core (
file_hash), brute-force is impossible. -
file_hashis stored in the ZIP archive comment as a separate key in the format SHA256:. -
Think of the JSON file as the key and the archive comment as the lock's core — without the core, the lock cannot be opened.
-
All data is securely locked: having the JSON and archive without the core is useless.
-
You can split the key and the core between different people for extra security.
-
Plausible deniability: just remove the archive comment, and the core is irreversibly lost.
-
The key and archive can be stored together without risk, as long as the
file_hashis missing. -
The final key for the archive is generated as:
final_key = SHA256(SHA256(answer1 + file_hash) + SHA256(answer2+ file_hash) + SHA256(answer3+ file_hash) + ...).
SHA256 Secure Mode Security Assessment
The SHA256 Secure Mode method combines AES-256-CBC and SHA-256, providing multi-layer protection. The final key is derived from the file hash (file_hash) and the user's answers, making brute-forcing the key virtually impossible without both components.
Thanks to its unique structure (combining answer1 + file_hash and an additional "payload"), this method resembles split knowledge schemes but has no direct analogs among common solutions.
With properly chosen answers (strong passwords), the method offers a high level of cryptographic security and additional features, such as plausible deniability by removing the archive's comment.
📸 Interface Preview
