"Generate stronger passwords. Protect your digital identity."
Combining 1Password, Bitwarden, and enterprise cybersecurity intelligence into one client-side platform.
π Live Demo β’ β¨ Features β’ π§ Mathematical Foundations β’ π¦ Quick Start β’ π Architecture
NEXUSVAULT is not a basic random string generator. It is an enterprise-grade cybersecurity platform engineered to evaluate, harden, and defend your digital credentials across all modern threat vectors.
Built entirely with client-side cryptography (window.crypto.getRandomValues and WebCrypto API), NEXUSVAULT enforces Zero-Knowledge privacy: secrets and encryption keys never leave your browser memory.
βββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββ
β NEXUSVAULT COMMAND CENTER β
β β
β YOUR PASSWORD: 9k!R7#pL@ZQ2$TnV!xYw8%Fm3^Bq β
β STRENGTH: UNBREAKABLE β
β ENTROPY: 148.2 bits β
β CRACK TIME: 10Β³β΅ years (Offline GPU Cluster) β
β β
β [ COPY SECRET ] [ REGENERATE ] [ STORE IN SECURE VAULT ] β
βββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββββ
- Unbiased Randomness: Powered by
window.crypto.getRandomValues()with rejection sampling to eliminate modulo bias. - Customizable Complexity: Length (4β64 chars), Uppercase, Lowercase, Numbers, Symbols, and custom character sets.
- Ambiguous Character Filtering: Excludes confusing pairs (
1/l/I,0/O/o) and nested symbols ({ } [ ] ( ) / \ ' "). - One-Click Presets: Maximum Security (64-char), Enterprise Standard (20-char), Easy to Read, and Numeric PIN.
- Uses a curated EFF-inspired dictionary of 1,200+ distinct English words.
- Configurable word counts (3β10 words), custom separators (
-,_,., space, random symbols), and casing styles. - Generates high-entropy passwords that are easy to remember for master disk encryption keys and root passwords.
- Generates unique handles across 6 categories: Cybersecurity, Developer, Gaming, Professional, Social, Quantum.
- Built-in formatting styles: PascalCase, snake_case, kebab-case, camelCase, LeetSpeak (1337).
- Instant availability quick-links for GitHub, X, and Reddit.
- Database of policy rules for top services (GitHub, Apple, Google, Chase Banking, Microsoft, Amazon, Netflix, Discord).
- Analyzes character length caps and restricted symbol filters (e.g., Chase Bank's disallowed
< > { } ' "characters). - Automatically generates passwords guaranteed to pass the target site's registration requirements.
- Zero Plaintext Transmission: Calculates SHA-1 hash client-side and transmits only the first 5 characters (prefix) over HTTPS.
- Candidate suffixes are compared locally in browser memory.
- Instant detection against over 10 billion leaked credentials with risk-level categorization.
- Batch Vault Audit: Scans your entire stored vault in one click without compromising credential privacy.
Calculates a dynamic 0β100 Security Score weighted across:
- Password Strength (25%) β Shannon entropy and character pool diversity.
- Password Uniqueness (20%) β Detection of credential reuse across services.
- Breach Exposure (25%) β Critical penalty for compromised hashes.
- Password Age (10%) β Flags credentials older than 6β12 months.
- 2FA / MFA Coverage (10%) β Tracks hardware keys and TOTP adoption.
- Security Hygiene (10%) β Notes, tags, and structure completeness.
- Interactive conversational AI cybersecurity advisor.
- Automated contextual diagnosis of your vault's security posture.
- Answers security questions ("Why is my score 94?", "What should I fix first?", "How does entropy work?", "Passkeys vs Passwords").
- Full CRUD credential management categorized by Banking, Social, Work, Development, Email, Personal.
- Encrypted notes for disaster recovery codes, OpenAI/Stripe API keys, SSH passphrases, and security questions.
- Master PIN protection simulation with masked views.
- Automatically erases copied passwords from system memory after 15, 30, 45, or 60 seconds.
- Live visual countdown pill in the topbar with manual instant purge.
- Generates high-definition, audit-ready compliance reports.
- Includes vulnerability inventory tables, remediation roadmaps, and executive summaries.
- One-click print-to-PDF layout with print-optimized CSS.
- Export/Import options for JSON encrypted backups and CSV spreadsheets.
- Cyber Dark (Default: Electric Purple & Deep Navy)
- Midnight Blue (Ocean Cobalt & Steel)
- Neon Violet (Vibrant Magenta & Cyberpunk)
- Emerald Ops (Terminal Green & Matrix Ops)
- Clean Light (High-Contrast Day Mode)
Where:
-
$L$ = Length of the password -
$N$ = Character pool size ($26 + 26 + 10 + 33 = 95$ ) - Pattern Penalties = Deductions for repeated characters, sequential runs (
123,abc), and keyboard patterns.
| Attack Vector | Modeled Guess Speed | 8-Char Lowercase | 16-Char Random (NEXUSVAULT) |
|---|---|---|---|
| Online (Rate-Limited) | 100 guesses / hour | ~240 years |
|
| Online (Fast API) | 10,000 guesses / sec | ~23 hours |
|
| Offline GPU Cluster (8x RTX 4090) | 100 Billion / sec ( |
< 2 seconds |
|
| Cloud Supercomputer / ASIC | 100 Trillion / sec ( |
Instant (< 1 ms) |
|
| Shortcut | Action |
|---|---|
Ctrl + K / β + K |
Open Global Command Palette & Search |
Ctrl + G / β + G |
Jump to Password Generator |
Ctrl + C |
Securely copy focused credential to auto-clearing clipboard |
Esc |
Close active modal, drawer, or command palette |
? |
Show Keyboard Shortcuts cheat sheet |
- Node.js: v18.0+ or v20+
- npm or yarn / pnpm
# 1. Clone the repository
git clone https://github.com/codexanjan/nexusvault.git
# 2. Navigate to directory
cd nexusvault
# 3. Install dependencies
npm install
# 4. Start development server
npm run devThe application will start locally at http://localhost:5188/.
npm run build
npm run previewThis project is pre-configured with a GitHub Actions CI/CD workflow (.github/workflows/deploy.yml) for zero-config deployments.
- Push your repository to GitHub:
git add . git commit -m "feat: launch NEXUSVAULT cybersecurity platform" git push -u origin main
- In your GitHub repository:
- Go to Settings β Pages.
- Under Build and deployment β Source, select GitHub Actions.
- Every push to
mainwill automatically build and publish your live app to:https://<your-username>.github.io/<repo-name>/
| Layer | Technology |
|---|---|
| Core Framework | React 19 + TypeScript |
| Bundler & Dev Server | Vite 6 |
| Styling & Design System | Tailwind CSS 3.4 + Custom Glassmorphism & Cyber Tokens |
| Icons | Lucide React |
| Visual Effects & Confetti | Canvas-Confetti + Web Animations API |
| Cryptographic Primitives | Web Crypto API (window.crypto.getRandomValues, crypto.subtle.digest) |
| State Management | React Context + LocalStorage Encryption Sync |
- No External Plaintext Logging: Plaintext passwords, secure notes, and seed data are never transmitted over network sockets.
- k-Anonymity Range Querying: When querying breach intelligence databases, only a 5-character truncated hash prefix is queried. Suffix comparison executes 100% on the local client CPU.
- Memory Auto-Purge: Clipboard contents are automatically cleared after a configurable duration to prevent snooping by untrusted clipboard-monitoring apps.
Contributions, issues, and feature requests are welcome!
- Fork the repository
- Create your feature branch (
git checkout -b feature/CyberDefenseFeature) - Commit your changes (
git commit -m 'Add some feature') - Push to the branch (
git push origin feature/CyberDefenseFeature) - Open a Pull Request
This project is open source and available under the MIT License.
Made with β€οΈ by Anjan Shetty
