Everything Rotorra does.
A complete breakdown of every feature, what it does, how it works, and which plan includes it.
Encrypted Password Vault
AES-256-GCM. Zero-knowledge. Your passwords, your keys.
Every vault item is encrypted on your device using AES-256-GCM before it ever touches our servers. Your master password derives your encryption key via PBKDF2 with 600,000 iterations — we never store it. We literally cannot read your data. Store passwords, secure notes, credit cards, SSH keys, API tokens, and certificates.
- AES-256-GCM symmetric encryption
- PBKDF2 600K iteration key derivation
- Unique IV per vault item
- 7 item types: password, note, card, identity, SSH key, API key, certificate
- Password strength scoring on every entry
- Favorites, tags, folder organization
- Soft-delete with recovery window
Breach Monitoring
Know before it's too late.
Using HaveIBeenPwned's k-anonymity API, Rotorra checks whether your passwords appear in known data breaches without ever transmitting the actual password. The first 5 characters of the SHA-1 hash are sent — nothing else. Findings are automatically surfaced as security alerts.
- k-anonymity model — password never transmitted
- Checks against billions of known breach records
- Auto-creates security findings for breached passwords
- Severity-scored alerts
- Free for all plans
AI Security Assistant — Rota
Your personal security analyst, powered by Claude.
Rota is an AI assistant with full context of your vault, security findings, risk score, and active subscriptions. Ask it anything: 'Which accounts are most at risk?', 'Where should I add 2FA first?', 'What's my biggest security gap?'. You get specific, actionable answers — not generic advice.
- Powered by Anthropic's Claude
- Full context of your vault and findings
- Suggests prioritized remediation steps
- Answers natural language security questions
- Rate-limited to prevent abuse
- Pro plan only
Identity Graph
See how all your accounts connect.
A force-directed 2D graph that maps relationships between your accounts, emails, usernames, and risk clusters. Click any node to see connections, password strength, and security tips. Drag to explore. Zoom in on clusters. Understand your digital attack surface visually.
- Circular ring layout — accounts + clusters
- Color-coded by risk level
- Click nodes for details and remediation tips
- Password strength bars per node
- Connected accounts panel
- Auto-rotates, drag to pause
Subscription Tracker
Stop paying for things you forgot about.
Rotorra automatically detects subscription-based services from your vault by matching account titles, tags, and domains against a database of 60+ known services — Netflix, Spotify, GitHub, OpenAI, AWS, Adobe, and more. See your total monthly and yearly spend at a glance.
- Auto-detects 60+ services
- Monthly and yearly cost totals
- Confirm, dismiss, or manually add subscriptions
- Edit estimated costs
- Filter by status and category
- Catch forgotten subscriptions
Secure Document Vault
The only safe place for your most sensitive files.
Upload passports, driver's licenses, tax records, insurance documents, recovery codes, crypto seed phrases, legal contracts, and medical records. Files go directly to a private encrypted bucket — never publicly accessible, never casually exposed. Download anytime with a single click.
- Private Supabase Storage bucket with RLS
- 8 categories with icons
- 50MB per file, unlimited files (Pro)
- PDF, image, Word, text support
- Confirmation required before upload (deliberate access)
- Download and delete controls
- 3 files on Free tier
Risk Cluster Analysis
One weakness that cascades into many.
Traditional security tools show isolated issues. Risk Clusters shows compound risk — groups of accounts that share the same weakness so that one breach triggers many. Analyzes your vault for critically weak passwords, weak password groups, and accounts missing 2FA.
- Critically weak password groups (< 30/100)
- Weak password clusters (30-49/100)
- No-2FA clusters (accounts missing authenticator tag)
- Compound 60%+ no-2FA warning
- Expand to see every affected account
- Dismiss resolved clusters
- Recompute anytime
Passkey Management
Track the future of authentication.
Passkeys replace passwords with cryptographic key pairs that authenticate via biometrics or device PIN. They're phishing-resistant and require nothing to remember. Rotorra lets you record which accounts you've passkey-enabled and track your adoption percentage.
- Record passkeys linked to vault items
- Track adoption percentage across all accounts
- See password-only accounts that can upgrade
- Mark accounts as passkey-enabled with one click
- Links passkey records to existing vault items
- WebAuthn roadmap
Emergency Access & Digital Legacy
Peace of mind for what matters most.
Assign trusted contacts who can request access to your vault if you become unavailable. They submit a request, you get an alert, and you have a configurable waiting period (24 hours to 30 days) to deny it. If you don't respond, access is granted automatically.
- Configurable waiting period (24h to 30 days)
- Three access levels: selected items, documents, full vault
- Revoke access at any time during grace period
- Generates unique invite tokens
- Status tracking (pending/active/revoked)
- 1 contact free · 5 on Pro · Unlimited on Business
Team Admin & Business Features
Enterprise-grade security management.
The Business plan adds a full organizational layer: invite team members, set roles (owner/admin/member), configure SSO with Okta, Azure AD, Google Workspace, or SAML 2.0, view a full audit log of every security event, and export it to CSV for compliance.
- Invite members by email with 7-day links
- Role-based access: Owner, Admin, Member
- SSO with Okta, Azure AD, Google Workspace, SAML 2.0
- Full audit log with actor, action, metadata, timestamp
- Export audit log to CSV
- Admin dashboard with seat usage
- Custom security policies
Family Plan
One subscription, everyone protected.
The Family plan creates an organization where up to 6 people each get a full Pro account under one subscription. Each person has their own separate encrypted vault — nothing is shared by default. You manage who's in the family from an admin panel.
- 6 seats included
- Every member gets full Pro features
- Each person has their own encrypted vault
- Family emergency access configuration
- Shared family documents vault
- One bill, one subscription
- $9.99/mo or $7.99 annual
Start protecting your accounts today.
Free forever. Pro at $4.99/mo. 14-day trial included. No credit card to start.