Add Key File or Hardware Token as 2FA methods

Security is one of the most crucial factors that users consider when choosing Cryptomator. In today’s digital age, two-factor authentication (2FA) has become an essential measure to safeguard our digital lives. I’ve noticed that many users have also requested the implementation of 2FA in Cryptomator, in addition to the Master Password. I’m curious to know if you have a plan or roadmap in place for this feature. I can even imagine that there are many users willing to pay for its implementation.

I look forward to hearing from you soon and learning about your thoughts or reasons for not implementing this feature.

1 Like

it’s 2026, and still no reply … (!)

Hi,

Not the answer to this original question but there is a way to achieve 2fa and even require a key file.

I use the Cryptomator keepassxc plugin. Keepassxc can be configured for two Factor authentication and one of those can be a key file. I also have keepassxc tied to my windows hello login so facial recognition or a pin code is required in addition to the password and key file so you can actually have three factors if you wish.

1 Like

Cryptomator is first and formost a privacy tool, it keeps files confidential. It does not offer the whole secuity suite of Confidentiality, Integrity, Availability, Authencity. Just the confidentiality part.

1 Like

Really? It’s not specifically marketed is a ‘confidentiality tool’ though… (!). Confidentiality is not even mentioned on the home page, whereas security ‘is’.

I definitely agree with your categorization of it as a confidentiality tool though. Fully secure as-is, it is not.