Manifesto

Authenticator apps treat design like an afterthought — grey cards, soft shadows, zero personality. LibreAuth is the opposite: neo-brutalist, open source, and honest about what it does.

We believe security software should be inspectable, portable, and — yes — fun to look at. When a tool guards your accounts, you should understand how it works and trust who built it.

Our principles

Transparent

Public code. Clear security docs. No "trust us" hand-waving.

Portable

Standard TOTP. Export anytime. No lock-in games.

Minimal data

Only what sync needs. Optional PostHog after consent — never your TOTP secrets.

Self-hostable

Your Supabase, your rules, your residency.

Roadmap

July 29, 2026

LibreAuth goes live — neo-brutalist UI, Supabase sync, AGPL license.

Next up

Client-side vault encryption and full export bundles.

Always

No ads, consent-based analytics, no made-up backstory.

What we are not building

  • A social network with MFA bolted on.
  • A proprietary vault that holds your secrets hostage.
  • An ad-supported "free tier" that sells your attention.
  • Enterprise bloatware with a 40-page sales deck.

FAQ

Who is LibreAuth for?
Developers, privacy-conscious users, and anyone tired of closed-source MFA apps that feel like afterthoughts.
How is this different from LibreSearch?
Same design philosophy — loud, honest, open source — applied to two-factor auth instead of search.
Will you sell my data?
No. There is no ad network and no data broker. Optional PostHog analytics (after cookie consent) help us improve the product — we do not sell your data.
Get started

Join the loud security club.

Free account. No credit card. Codes in under a minute.