All 21 Dependencies

Every package Passbolt API depends on, ranked by repo health score.

Passbolt API is the open source backend powering Passbolt Community Edition, a security-first password manager designed for teams. It provides a RESTful JSON API for managing, sharing, and auditing credentials with end-to-end encryption — meaning secrets are encrypted on the client before they ever reach the server, and only users holding the corresponding private key can decrypt them.

Built on CakePHP 5 and PHP 8.2+, the API supports authentication via session tokens and JWT, multi-factor authentication with TOTP and Duo, and LDAP-based directory synchronization. It can be deployed on any major Linux distribution, Docker, Kubernetes, or cloud marketplaces like AWS and DigitalOcean, with no vendor lock-in and zero telemetry.

Passbolt separates itself from conventional password managers by enforcing a zero-knowledge model at the protocol level: the server stores only encrypted ciphertext and public keys. Private keys never leave the user's device, making it suitable for regulated environments, government agencies, and organizations with strict data sovereignty requirements.

The project is maintained by Passbolt SA, headquartered in Luxembourg (EU), and undergoes multiple annual third-party security audits with full public disclosure of findings. The community edition is licensed under AGPL-3.0, while the Pro and Cloud editions add enterprise features such as SSO, advanced audit logs, directory sync, and dedicated support.

Join founders buildingwith open source

Opinionated takes, migration guides, cost-saving tips, and insights from the open source ecosystem.

Subscribe on Substack
Join 750+ subscribers

Search