Reuse
One password, forty accounts. That is one breach away from all of them.
Reuse is the single thing that turns somebody else's security failure into your problem. Repass replaces them in bulk instead of one painful evening at a time.
When a company is breached, the attackers do not stop at that company. They take the email-and-password pairs and try them everywhere else, because they know most people reuse. That is why a leak at a site you barely remember can end with your email account gone.
The fix is unique passwords everywhere, which is unmanageable by hand and trivial for software. Repass walks each site's own forgot-password flow, sets a different 20-character password on each one, and seals it in an encrypted vault.
You watch it happen and you approve anything a site asks a human for. Nothing changes without you seeing it.
More
The rest of what Repass does
Find accounts connected to your email
Every service you ever signed up for sent you an email. Repass reads those to build the list, so you find out about the 2016 forum account before somebody else does.
Reset compromised passwords
Rotating an exposed password matters more than rotating an old one. Repass does the rotation, on every account that needs it.
Generate strong passwords
The passwords Repass sets are made locally and never leave your machine in a form anyone else can read.
Store passwords securely
Your vault is sealed on your device. What our servers hold is ciphertext, and they do not have the key.
Change passwords automatically
Repass drives each site's real forgot-password flow in your own browser, and stops to ask when a site wants a human.
Two minutes from now
Your passwords stop being your problem.
3-day free trial · end-to-end encrypted · you can watch every step