
Picocrypt-NG
Paranoid, offline file encryption with XChaCha20 and Argon2id.
v2.18
11.2 MBscanned clean· 11 downloads
Screenshots
About
Picocrypt-NG is an open-source Android application for encrypting files locally. It is a community-maintained continuation of Picocrypt and belongs to the Security & Privacy category. The app does not use accounts or cloud storage, does not include telemetry, and does not request the Android INTERNET permission.
It encrypts a single file, multiple files, or an entire folder using XChaCha20. A password is processed with Argon2id to derive the encryption key, and optional keyfiles can be added, including a setting that requires them in a fixed order. Paranoid mode adds an extra cipher cascade and more difficult key derivation. Deniability mode makes an encrypted volume appear to contain random data. Optional compression and comments stored with the volume are also supported.
Each volume is authenticated, allowing tampering or corruption to be detected during decryption. Reed-Solomon error correction can recover volumes affected by limited corruption. An optional verify-before-write check can confirm integrity before data is written. Long-running operations continue in a foreground service if the app is moved to the background.
Picocrypt-NG volumes are compatible with the desktop application on Windows, macOS, and Linux. A multi-file or compressed volume contains one ZIP file inside, which Android saves without extracting. The software is free under the GPLv3 license, and its Android app is built from source, including a native library compiled from the repository's Go sources rather than using committed prebuilt binaries. MirrorNest distributes the official build directly from its own storage after scanning it for malware before publication.
Requires Android 7.0+
What's new in v2.18
v2.18 - Android release builds are prepared for F-Droid source and reproducible-build verification. - Updated Go image dependency with TIFF decoder security fixes.
App permissions
Read straight from this app's own installer file — the real access it declares it can request, not a guess.
- Show notifications
- Run a foreground service
- Foreground Service Data Sync
- io.github.picocrypt ng.picocrypt ng.dynamic Receiver Not Exported Permission
Reviews
No reviews yet — be the first.
More in Security & Privacy
Aegis Authenticator
Free, secure and open source 2FA app to manage tokens for your online services
WiFi Password Manager
Simple app using Shizuku or root access to manage WiFi passwords
sub rosa by naiveHA
Program the static password and/or OpenPGP keys to your hardware security key
SeekPrivacy
Activist-Grade Defense Against System-Level Data Surveillance
Cryptographic ID
Attest the trustworthiness of a device using asymmetric cryptography
Keep: FROST Nostr Signer
FROST threshold signer and Nostr event signer for Android