πŸ›‘οΈ CapAuth Bunker

Your phone holds the key. The key never leaves this device.

1 Β· Key

No key loaded.
How do I get this from my computer? On your computer's terminal:
1 Β· list your keys β†’ gpg --list-secret-keys --keyid-format=long
2 Β· export the private key β†’ gpg --armor --export-secret-keys YOUR_KEY_ID
Copy the whole BEGIN…END PGP PRIVATE KEY BLOCK and paste it above.
The service needs your public key registered too: gpg --armor --export YOUR_KEY_ID
If your key has a PGP passphrase (the long one from your keyring), enter it here once. The bunker strips it and re-protects the key with just your Vault passphrase below β€” so from then on you only ever type the Vault passphrase. Leave blank if your key has no passphrase.
A passphrase that encrypts the key at rest on this phone (PBKDF2 β†’ AES-GCM). You'll re-enter it to Unlock. Can be the same as the PGP one.
πŸ“€ Send this key to another device (QR) Paste your key above, set a transfer PIN, then show a QR your other device scans with its camera β€” no clipboard, no cloud, and the QR disappears when you're done. (Big RSA keys animate across several frames; keep scanning.)

2 Β· Pair with desktop

When you start a login on your computer it shows a QR / capauth-bunker://… link. Scan or paste it here, then Connect β€” this phone signs the login request.
Load + unlock a key first.