Dashlane security
Learn how Dashlane's security model delivers maximum protection, privacy, and peace of mind.
secure by design
Built on zero-knowledge architecture

Locally encrypted and decrypted
Dashlane vaults are encrypted and decrypted locally on user devices. Only users hold the keys to their data—Dashlane can never view or access user credentials.

Protected by confidential computing
AWS Nitro Enclaves extend our zero-knowledge protection to the cloud, providing hardware-level isolation that keeps sensitive cryptographic operations invisible to the host.

Secured across the full product
Our zero-knowledge approach applies across vaults, audit logs, integrations, and all data flows, ensuring data is protected at rest, in use, and in transit.

Patented security model
Dashlane holds 8 patents, with 6 more pending, for our innovative approach to zero-knowledge security.
How it works
Cryptographic architecture & key management
When a user logs in to Dashlane on a new device, their device generates a unique 40-byte key that requires explicit user verification—separate from the vault encryption key—to ensure only trusted endpoints can decrypt vault data.

AES256-CBC-HMAC mode for confidentiality and integrity

Argon2d (3 iterations, 32 MB memory cost, 2 threads) for GPU-resistant password stretching

Distinct secrets for vault encryption and device authentication
Enterprise-grade security features
Committed to compliance
We stay ahead of industry standards with proactive compliance and the latest certifications.

Dashlane security FAQs
Pushing zero-knowledge boundaries with confidential computing
Security resources

Experience the Dashlane difference









