Password manager with a simple premise: your PM shouldn't know anything about you. No account (not even email), no cloud, no telemetry. AES-256-GCM + PBKDF2 600K iterations. Built by a CISO out of professional frustration. Free forever. Croatian + English.
No reviews yetBe the first to leave a review for Geslar
Maker
📌
Hey Product Hunt!
I'm Daniel, a CISO and IT infrastructure lead from Croatia. I built Geslar because every password manager I evaluated for work required something I wasn't willing to give: my email, my data on someone else's server, or a subscription.
What makes Geslar different:
- NO ACCOUNT — you don't even need an email to use it
- NO CLOUD — your vault lives on your device, nowhere else
- NO TELEMETRY — zero analytics, zero tracking, zero knowledge
- FREE — not freemium, actually free (all features, no limits)
Security model:
- AES-256-GCM encryption
- PBKDF2-SHA256 with 600,000 iterations
- Shadow DOM isolation for autofill
- CSP protection
- Master key exists only in RAM
Bonus: passphrase generator from 5,700+ Croatian words across 8 regional dialects. "krava-čokolada-tramvaj-oblak" is easier to remember than "M@rk0_2024!" and takes 4 trillion years to brute force.
The ecosystem:
1. geslar.app — web generator + password checker (HIBP)
2. Škrinjar — browser extension (Chrome, Firefox, Edge, Opera)
3. Ključar — standalone TOTP/HOTP authenticator (iOS/Android)
Available in Croatian and English. EU infrastructure (Hetzner, Germany) planned for cloud sync in the future.
I'd love your feedback — especially on the security model. Happy to answer any questions.