Decrypt text with a password
Paste text that was encrypted with the encrypt text tool, enter the password and read the original.
How it works
-
Paste your text
Type or paste the text you want to encrypt, or the encrypted text you want to open.
-
Choose a password
The text is encrypted in your browser with AES-256. Remember the password well: without it the text cannot be recovered.
-
Share the code
Copy the encrypted text and send it. The recipient opens it here with the same password.
How it works
Enter the encrypted text and the same password that was used to create it. The tool derives the key with PBKDF2 and decrypts with AES-256-GCM, all in your browser.
You can be sure of the result: AES-GCM authenticates the data, so if the password is wrong or even one character of the encrypted text was changed, you get an error instead of garbled text. When it works, the note confirms that the text was checked and hasn't been altered.
Only text made with the encrypt tool on this site can be decrypted here, because it uses a specific format (a version byte, a salt, an IV and the encrypted data, written as Base64). A wrong password can't be told apart from damaged text, so both give the same message.
Frequently asked questions
How secure is this?
The text is encrypted with AES-256-GCM, the same standard banks and messaging apps use. The key is derived from your password with PBKDF2 (600,000 rounds). So security mostly depends on your password: choose one of at least 10 characters.
Is my text or password stored anywhere?
No. Everything happens in your browser, using your browser's built-in Web Crypto. Nothing goes to a server.
I lost my password. Can I still open the text?
No. Without the right password the text cannot be decrypted, not even by us.
Why does the encrypted text look different every time?
Every encryption uses a new random salt and IV, so nobody can tell that two messages are the same. Every version can be opened with the same password.
What format is the encrypted text?
Base64 of: 1 version byte, 16 bytes of salt, 12 bytes of IV and then the encrypted text with a 16-byte tag (AES-256-GCM, key via PBKDF2-HMAC-SHA256 with 600,000 rounds).