Skip to main content
Odoo Community Association

Vault

Beta License: AGPL-3 OCA/server-auth Translate me on Weblate Try me on Runboat

This module implements a vault for secrets and files using end-to-end-encryption. The encryption and decryption happens in the browser using a vault specific shared master key. The master keys are encrypted using asymmetrically. For this the user has to enter a second password on the first login or if he needs to access data in a vault. The asymmetric keys are stored for a certain time in the browser storage.

The server can never access the secrets with the information available. Only people registered in the vault can decrypt or encrypt values in a vault. The meta data isn’t encrypted to be able to search/filter for entries more easily.

This modules requires a secure context for the browser to work properly and therefore HTTPS support is required.

The vault-recovery project focuses on disaster recovery in case of an incident to recover secrets from old database backups or old exports.

Table of contents

Known issues / Roadmap

  • Field and file history for restoration

  • Import improvement

  • Support challenge-response/FIDO2

  • Support for argon2 and kdbx v4

  • When changing an entry from one vault to another existing vault, the values added on this entry cannot be accessed, so the field vault is going to be readonly when it is defined.

    If you want to move entries between vaults you can use the export -> import option.

  • HTTPS or localhost (secure browser context) is required for the client side encryption

Bug Tracker

Bugs are tracked on GitHub Issues. In case of trouble, please check there if your issue has already been reported. If you spotted it first, help us to smash it by providing a detailed and welcomed feedback.

Do not contact contributors directly about support or help with technical issues.

Credits

Authors

  • initOS GmbH

Contributors

Maintainers

This module is maintained by the OCA.

Odoo Community Association

OCA, or the Odoo Community Association, is a nonprofit organization whose mission is to support the collaborative development of Odoo features and promote its widespread use.

This module is part of the OCA/server-auth project on GitHub.

You are welcome to contribute. To learn how please visit https://odoo-community.org/page/Contribute.

Release files for odoo-addon-vault 18.0.1.0.10.1

For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.

Built distribution (wheel)

Table of built distributions (wheels) for odoo-addon-vault 18.0.1.0.10.1
File Interpreter ABI Platform
odoo_addon_vault-18.0.1.0.10.1-py3-none-any.whl Python 3 none any Details

Release files / odoo_addon_vault-18.0.1.0.10.1-py3-none-any.whl

Download URL odoo_addon_vault-18.0.1.0.10.1-py3-none-any.whl
Size 161.9 kB
Tags Python 3
SHA-256 checksum
How to use checksums
b0f554ed33201a3220975e023dba0ba55d655c296755aef15b2550b4f4acf3be
BLAKE2b-256 checksum
How to use checksums
a75422f9246c6c84f53cec131e486d1c412b73bb2531dbf429d7aa667ff7c8e9
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
No
Uploaded via twine/7.0.0 CPython/3.14.4

Release history Release notifications | RSS feed

This release

18.0.1.0.10.1 This release

1 release file

Anthropic, PBC Visionary sponsor Bloomberg Visionary sponsor Hudson River Trading Visionary sponsor Meta Visionary sponsor NVIDIA Visionary sponsor Microsoft Sustainability sponsor Depot Continuous Integration AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page