Portevio logo

The password manager that never sees your passwords.

Phishing-resistant credential sharing for small teams. Secrets stay on trusted devices — not on servers.

Device-bound

Secrets stay on your devices

QR-powered

Share access with a scan

Verifiably shared

Access is always verified

The Problem

Small teams manage access like it's still 2010.

The tools haven't kept up. The threats have.

Credential chaos

Passwords live in spreadsheets, browser autofill, and forgotten docs.

Phishing wins

A fake login page is often enough. Traditional tools still trust the browser.

No audit trail

Nobody knows who shared access, when it happened, or where it went.

NIS2 pressure

SMEs are expected to prove cyber hygiene and access control.

How it works

One scan. Zero server exposure.

The trust model lives on the devices your team already carries.

1

Browser Extension

Detects the login page and creates encrypted session context.

2

Mobile Scan

Phone scans QR and verifies the real domain locally.

3

Local Decryption

Credentials are decrypted only on-device.

4

Signed Response

Phone signs a one-time authentication response.

5

Login Complete

No clipboard. No typing. No credential exposure.

The backend is just a pipe.

Portevio only relays encrypted packets between trusted devices. It cannot read, recover, or store credentials.

Product Demo

See Portevio in action.

A short walkthrough of the QR-powered login and device-bound workflow.

Features

Everything a small team needs. Nothing it doesn't.

QR-Based Login

Scan to authenticate with local domain verification.

Local Encrypted Vault

Secrets are encrypted and stored only on trusted devices.

Secure P2P Sharing

End-to-end encrypted credential transfers between devices.

Signed Sharing Ledger

Cryptographic log of who shared what, with whom, and when.

Team Workspaces

Organize credentials by team, project, role, or client.

Audit Reports

Export access history for compliance reviews and internal audits.

Security

Security by architecture. Not by promises.

Portevio is designed around one simple rule: credentials should never become server data.

  • Zero-knowledge architecture
  • End-to-end encrypted transfers
  • Device authentication with digital signatures
  • Replay-resistant sessions
  • Trusted device linking
Capability Traditional Portevio
Server-side vault Yes No
QR domain verification No Yes
Device-only decryption Limited Yes
Cryptographic sharing logs Limited Yes
SME-first workflows Weak Built-in
Early Access

Practical security for modern teams.

Portevio is currently under active development and nearing a testable release. Looking to connect with partners, early adopters, and endorsers who care about practical security for small teams.

Request Early Access