Drop a file and set a passphrase
01Any type, max 5 GB per file. You alone keep the passphrase; if forgotten, it cannot be recovered. The page warns if it looks weak.
Ready to use—no signup. Drop in a photo, video, or archive; this tab encrypts or decrypts it with AES-256-GCM, then downloads the ciphertext to this device. The file, passphrase, and filename never leave the browser. On decrypt, the original name is restored from the header. Short text secrets belong on Burn-Link.
Drop a file here, or click to choose
Any type · max 5 GB per file
Output extension
Key method
Up to 1,000 lines at a time, 10 KB per line. A failed line does not stop the rest.
Ciphertext lives only in the file you download. A forgotten passphrase cannot be recovered. If any chunk fails verification, the run stops and no partial plaintext is written.
0%
Download filename
Confirm the browser saved this file. A forgotten passphrase cannot be recovered.
Any type, max 5 GB per file. You alone keep the passphrase; if forgotten, it cannot be recovered. The page warns if it looks weak.
This tab encrypts in chunks with AES-256-GCM and outputs .lock or .enc. The file and passphrase are not uploaded. Progress is shown in bytes processed.
Drop the ciphertext back and enter the same passphrase to restore the original filename. When you send it, do not put the passphrase on the same channel as the ciphertext.
After you drop or pick a file, the contents stay in this tab. The passphrase is derived with PBKDF2-HMAC-SHA256 (at least 100,000 iterations) into a 256-bit key, with a unique salt per file. Plaintext is not sent as a request body.
Uses AES-256-GCM. Each chunk has its own IV and 16-byte tag. The header stores the original filename and MIME; after decrypt, the file downloads under that name.
Output is .lock or .enc, downloaded by the browser. To restore, drop the ciphertext back and enter the same passphrase. For short secrets, use Burn-Link instead of sending a one-time link from this page.
File Encryption Box only answers how to lock a whole file locally. The algorithm, capacity, format, and what it cannot do are all on this page.
Computation uses the browser Web Crypto API. Passphrase derivation is PBKDF2-HMAC-SHA256 with at least 100,000 iterations. Text mode can also use a 32-byte raw key (Base64 or Hex).
Any binary, max 5 GB per file, 1 MB chunks by default. Over the limit is rejected. Progress is shown in bytes processed. Text mode: up to 1,000 lines at a time, 10 KB per line.
Magic is CSLK. The header holds salt, chunk size, optional filename and MIME; each chunk is then 12-byte IV + ciphertext + 16-byte tag. .enc and .lock have the same contents.
A forgotten passphrase cannot be recovered. It cannot stop you from sending ciphertext and passphrase together to the wrong person. If any chunk's tag fails, the run stops and no partial plaintext is written.
.lock is the default; switch when the recipient expects .enc.# in the link, and it burns after the recipient opens it..lock or .enc by cloud storage or email. Do not send the passphrase on the same channel as the ciphertext; you can pass the passphrase separately with Burn-Link. The recipient drops the ciphertext back on this page and enters the same passphrase to decrypt. FastPwd's servers never receive this file.You can generate the file passphrase locally first. Do not stuff a short secret into a .lock—use a one-time link instead. Plaintext, keys, and files are not uploaded by default.
Notice
If forgotten or guessed, the file cannot be recovered. Encrypt anyway?