
Products
PassHub
Vault for credentials, documents, and shared secrets, with no master password, secured with the WWPass Key and zero-trust architecture.

Products
PassHub
Vault for credentials, documents, and shared secrets, with no master password, secured with the WWPass Key and zero-trust architecture.

Products
PassHub
Vault for credentials, documents, and shared secrets, with no master password, secured with the WWPass Key and zero-trust architecture.
Built for credentials, documents, and shared secrets
Login credentials and service accounts
Stored in the vault with full audit logs and no central point of exposure.
Software serial numbers and licence keys
Accessible only to authorized team members, with access logged in full.
Bank account and payment card data
Encrypted on the user's device before anything reaches storage.
SSL certificates and API keys
Stored and shared without ever appearing in plaintext on the server.
PDF and Word documents
Secured with the same client-side encryption applied to every item in the vault.
Any other sensitive files
PassHub for Business applies the same encryption model to any file type.
Built for credentials, documents, and shared secrets
Login credentials and service accounts
Stored in the vault with full audit logs and no central point of exposure.
Software serial numbers and licence keys
Accessible only to authorized team members, with access logged in full.
Bank account and payment card data
Encrypted on the user's device before anything reaches storage.
SSL certificates and API keys
Stored and shared without ever appearing in plaintext on the server.
PDF and Word documents
Secured with the same client-side encryption applied to every item in the vault.
Any other sensitive files
PassHub for Business applies the same encryption model to any file type.
Built for credentials, documents, and shared secrets
Login credentials and service accounts
Stored in the vault with full audit logs and no central point of exposure.
Software serial numbers and licence keys
Accessible only to authorized team members, with access logged in full.
Bank account and payment card data
Encrypted on the user's device before anything reaches storage.
SSL certificates and API keys
Stored and shared without ever appearing in plaintext on the server.
PDF and Word documents
Secured with the same client-side encryption applied to every item in the vault.
Any other sensitive files
PassHub for Business applies the same encryption model to any file type.

No master password to lose, guess, or reuse
PassHub for Business does not derive encryption keys from a master password. Encryption keys come from the WWPass Key, the same one used to log in, removing a single point of failure most password managers still depend on.

No master password to lose, guess, or reuse
PassHub for Business does not derive encryption keys from a master password. Encryption keys come from the WWPass Key, the same one used to log in, removing a single point of failure most password managers still depend on.

No master password to lose, guess, or reuse
PassHub for Business does not derive encryption keys from a master password. Encryption keys come from the WWPass Key, the same one used to log in, removing a single point of failure most password managers still depend on.

Encrypted before it ever leaves the user's device
Data is encrypted directly on the user's device using the WWPass Key. The PassHub for Business server never sees this data in a decrypted form, and by design, no one but the user can view it.
This runs on the same mechanism as WWPass Authentication: the WWPass Key generates a key unique to each user-service pairing, not known to WWPass itself. PassHub for Business applies that mechanism to files and credentials instead of just a login session.

Encrypted before it ever leaves the user's device
Data is encrypted directly on the user's device using the WWPass Key. The PassHub for Business server never sees this data in a decrypted form, and by design, no one but the user can view it.
This runs on the same mechanism as WWPass Authentication: the WWPass Key generates a key unique to each user-service pairing, not known to WWPass itself. PassHub for Business applies that mechanism to files and credentials instead of just a login session.

Encrypted before it ever leaves the user's device
Data is encrypted directly on the user's device using the WWPass Key. The PassHub for Business server never sees this data in a decrypted form, and by design, no one but the user can view it.
This runs on the same mechanism as WWPass Authentication: the WWPass Key generates a key unique to each user-service pairing, not known to WWPass itself. PassHub for Business applies that mechanism to files and credentials instead of just a login session.
Your vault, organized into safes
Separate safes, separate keys
Inside your vault, data is stored in safes such as Personal, Work, or Client Files. Each safe has its own encryption key.
Group access, role-based control
Safes and users can belong to multiple groups, following the role-based access control model used in Active Directory, Entra ID, and Google Workspace.
Share the safe, not the server
Sharing happens at the safe level. A recipient's key is used to re-encrypt access, so the safe's key is never exposed to PassHub for Business itself.
Your vault, organized into safes
Separate safes, separate keys
Inside your vault, data is stored in safes such as Personal, Work, or Client Files. Each safe has its own encryption key.
Group access, role-based control
Safes and users can belong to multiple groups, following the role-based access control model used in Active Directory, Entra ID, and Google Workspace.
Share the safe, not the server
Sharing happens at the safe level. A recipient's key is used to re-encrypt access, so the safe's key is never exposed to PassHub for Business itself.
Your vault, organized into safes
Separate safes, separate keys
Inside your vault, data is stored in safes such as Personal, Work, or Client Files. Each safe has its own encryption key.
Group access, role-based control
Safes and users can belong to multiple groups, following the role-based access control model used in Active Directory, Entra ID, and Google Workspace.
Share the safe, not the server
Sharing happens at the safe level. A recipient's key is used to re-encrypt access, so the safe's key is never exposed to PassHub for Business itself.

Built for teams, not just individuals
PassHub for Business adds local user management and an optional connection to your company's IAM system: Active Directory, Microsoft Entra ID, or Google Workspace. Administrators can add or revoke user access and define specific user roles.
Audit records track who did what and when, with special detail on administrator actions. PassHub for Business can also connect to external SIEM systems including Microsoft Sentinel and CrowdStrike SIEM, for centralised company-wide IT audit.
Deploy it as a cloud service, or self-hosted on your own infrastructure, including through the PassHub for Business listing on Microsoft Azure Marketplace.

Built for teams, not just individuals
PassHub for Business adds local user management and an optional connection to your company's IAM system: Active Directory, Microsoft Entra ID, or Google Workspace. Administrators can add or revoke user access and define specific user roles.
Audit records track who did what and when, with special detail on administrator actions. PassHub for Business can also connect to external SIEM systems including Microsoft Sentinel and CrowdStrike SIEM, for centralised company-wide IT audit.
Deploy it as a cloud service, or self-hosted on your own infrastructure, including through the PassHub for Business listing on Microsoft Azure Marketplace.

Built for teams, not just individuals
PassHub for Business adds local user management and an optional connection to your company's IAM system: Active Directory, Microsoft Entra ID, or Google Workspace. Administrators can add or revoke user access and define specific user roles.
Audit records track who did what and when, with special detail on administrator actions. PassHub for Business can also connect to external SIEM systems including Microsoft Sentinel and CrowdStrike SIEM, for centralised company-wide IT audit.
Deploy it as a cloud service, or self-hosted on your own infrastructure, including through the PassHub for Business listing on Microsoft Azure Marketplace.

Administrators manage the system, not what's inside it
Separation of duties means administrators handle support and backup. They cannot read unencrypted documents, access encryption keys, or manage who else can.

Administrators manage the system, not what's inside it
Separation of duties means administrators handle support and backup. They cannot read unencrypted documents, access encryption keys, or manage who else can.

Administrators manage the system, not what's inside it
Separation of duties means administrators handle support and backup. They cannot read unencrypted documents, access encryption keys, or manage who else can.
Built for sectors that cannot tolerate exposure
Meets regulated-industry requirements
Supports GDPR, HIPAA, and NIST 800-63 expectations for handling sensitive data.
Audit-ready by default
Every action is logged with detail on who, when, and what, including a dedicated record of all administrator operations.
Reduces breach liability
Data stays encrypted at rest, so a compromised server does not expose readable content.
Open to inspection
PassHub for Business's code is open source, so its security can be independently reviewed rather than taken on faith.
Built for sectors that cannot tolerate exposure
Meets regulated-industry requirements
Supports GDPR, HIPAA, and NIST 800-63 expectations for handling sensitive data.
Audit-ready by default
Every action is logged with detail on who, when, and what, including a dedicated record of all administrator operations.
Reduces breach liability
Data stays encrypted at rest, so a compromised server does not expose readable content.
Open to inspection
PassHub for Business's code is open source, so its security can be independently reviewed rather than taken on faith.
Built for sectors that cannot tolerate exposure
Meets regulated-industry requirements
Supports GDPR, HIPAA, and NIST 800-63 expectations for handling sensitive data.
Audit-ready by default
Every action is logged with detail on who, when, and what, including a dedicated record of all administrator operations.
Reduces breach liability
Data stays encrypted at rest, so a compromised server does not expose readable content.
Open to inspection
PassHub for Business's code is open source, so its security can be independently reviewed rather than taken on faith.
Part of the WWPass platform
One key, every application
PassHub for Business uses the WWPass Key, the same one that handles authentication everywhere else WWPass is deployed.
Zero-trust, applied to storage
PassHub for Business runs on WWPass's zero-trust architecture, the same foundation behind WWPass Authentication.
Isolation, per safe instead of per service
Each safe is isolated the way each service is isolated in WWPass Authentication. One relationship, one set of keys.
Part of the WWPass platform
One key, every application
PassHub for Business uses the WWPass Key, the same one that handles authentication everywhere else WWPass is deployed.
Zero-trust, applied to storage
PassHub for Business runs on WWPass's zero-trust architecture, the same foundation behind WWPass Authentication.
Isolation, per safe instead of per service
Each safe is isolated the way each service is isolated in WWPass Authentication. One relationship, one set of keys.
Part of the WWPass platform
One key, every application
PassHub for Business uses the WWPass Key, the same one that handles authentication everywhere else WWPass is deployed.
Zero-trust, applied to storage
PassHub for Business runs on WWPass's zero-trust architecture, the same foundation behind WWPass Authentication.
Isolation, per safe instead of per service
Each safe is isolated the way each service is isolated in WWPass Authentication. One relationship, one set of keys.
Common questions
Learn more about WWPass and contact us to discuss your use case and get a demo.
What is PassHub?
Is PassHub a separate product from WWPass?
Can WWPass or an administrator read what's stored in PassHub?
What's the difference between the vault and a safe?
What does PassHub Business add?
Can PassHub be deployed on our own infrastructure?
Is PassHub's code open to review?
Common questions
Learn more about WWPass and contact us to discuss your use case and get a demo.
What is PassHub?
Is PassHub a separate product from WWPass?
Can WWPass or an administrator read what's stored in PassHub?
What's the difference between the vault and a safe?
What does PassHub Business add?
Can PassHub be deployed on our own infrastructure?
Is PassHub's code open to review?
Common questions
Learn more about WWPass and contact us to discuss your use case and get a demo.
What is PassHub?
Is PassHub a separate product from WWPass?
Can WWPass or an administrator read what's stored in PassHub?
What's the difference between the vault and a safe?
What does PassHub Business add?
Can PassHub be deployed on our own infrastructure?
Is PassHub's code open to review?

Get WWPass
Download the WWPass Key app and test authentication without a username or password.

Get WWPass
Download the WWPass Key app and test authentication without a username or password.
