βœ… Done!
πŸ“ Plain Text β€”
0 characters 0 bytes
Result Encrypted
πŸ” Uses AES-GCM 256-bit encryption with PBKDF2 key derivation (100,000 iterations). Output is Base64-encoded and includes a random salt + IV prepended.
βš™οΈ Settings
Password
Enter a password
Confirm Password
Options
Actions
⚠️ No password recovery. If you lose your password, the encrypted text cannot be recovered. Store it safely.

What Is a Text Encryptor?

A text encryptor is a tool that scrambles readable text into an unreadable ciphertext using a secret key (your password). Only someone who knows the password can decrypt it back to the original text. This tool uses AES-GCM 256-bit β€” the same encryption standard trusted by governments, banks, and security professionals worldwide.

Everything runs locally in your browser using the Web Crypto API. Your text and password are never transmitted, stored, or logged anywhere.

How to Use This Tool

  • Choose a mode β€” click Encrypt or Decrypt at the top.
  • Enter your text β€” type or paste into the input box.
  • Enter a password β€” the same password is needed to decrypt later.
  • Click the action button β€” the result appears in the output box.
  • Copy or download β€” copy the ciphertext and share it via any channel.

Encryption Details

  • Algorithm: AES-GCM (Galois/Counter Mode) with a 256-bit key.
  • Key derivation: PBKDF2 with SHA-256 and 100,000 iterations.
  • Salt: 16 random bytes, unique per encryption.
  • IV: 12 random bytes, unique per encryption.
  • Authentication: GCM provides built-in integrity checking β€” tampered ciphertext fails to decrypt.
  • Output format: Base64-encoded salt || iv || ciphertext.

Why AES-GCM?

AES-GCM is an authenticated encryption mode. That means it not only keeps your data secret, it also detects any tampering. If even one character of the ciphertext is modified, decryption fails with an authentication error. This protects against man-in-the-middle attacks and accidental corruption.

Password Best Practices

  • Use a long password β€” 12+ characters is a good minimum.
  • Mix character types β€” uppercase, lowercase, numbers, and symbols.
  • Avoid common words β€” dictionary words are easy to brute-force.
  • Use a passphrase β€” e.g., correct-horse-battery-staple-42! is stronger than P@ss1.
  • Don't reuse passwords β€” use a unique password for each encrypted message.
  • Share the password securely β€” send it over a different channel than the ciphertext.

Common Use Cases

  • Sharing sensitive notes β€” encrypt a message and send it via email or chat.
  • Protecting API keys β€” store secrets in an encrypted form.
  • Password journal β€” encrypt your password list before saving.
  • Private diary entries β€” keep personal thoughts encrypted.
  • Secure backups β€” encrypt text data before uploading to cloud storage.
  • Learning cryptography β€” see AES-GCM in action with a clean UI.

Security Notes

  • Browser-based: All operations run using the Web Crypto API in your browser.
  • No server: Your text and password are never sent anywhere.
  • No storage: Nothing is saved to localStorage, cookies, or any database.
  • No logs: There's no backend to log anything.
  • Close the tab β€” everything is wiped from memory instantly.

Important: This tool is for convenience. For high-stakes security, use dedicated tools like GPG, VeraCrypt, or age with audited implementations.

Frequently Asked Questions

  • Can I decrypt without the password? β€” No. AES-256 is unbreakable by brute force with current technology.
  • Is my data uploaded? β€” No. Everything runs in your browser.
  • What if I forget my password? β€” The data is unrecoverable. There is no backdoor.
  • Can I encrypt files? β€” This tool is for text. For files, use a file encryption tool.
  • Is the output safe to share? β€” Yes, as long as your password is strong and shared separately.
  • Why does the same text encrypt differently each time? β€” A new random salt and IV are generated per encryption. This is a security feature.
  • Is this tool free? β€” Yes, completely free with no limits.

Related Tools

Privacy Note

Everything runs in your browser using the Web Crypto API. Your text, password, and encryption keys never leave your device. Nothing is transmitted, stored, or shared. Close the tab and everything is gone.