End-to-end encryptedzero-knowledgeopen standards

Your two-factor codes,
behind a moat.

Moat keeps your 2FA codes and passwords encrypted on your device — and end-to-end encrypted in the cloud. No one can read them but you.

No account required No ad tracking, ever Works offline
Google Slack Instagram Spotify
Moat showing live two-factor authentication codes for Google, GitHub, Microsoft and Instagram

Generates codes for thousands of services that support two-factor authentication

AES-256
GCM encryption for every cloud backup
210,000
PBKDF2 key iterations, per OWASP guidance
0
ad trackers & advertising SDKs — none, ever
1000s
of services via open TOTP & HOTP

Personalize

Make it unmistakably yours.

Four hand-crafted app icons and full light/dark theming. A small touch that makes a security app feel like it belongs to you.

  • Default, Midnight, Ocean & Gold icons
  • Organize accounts into folders
  • Instant search across every code
Moat app icon and theme picker on iPhone

Passwords & API keys too

One secure home for logins as well.

A built-in vault for passwords and API keys lives right alongside your codes — encrypted in the iOS Keychain, revealed only after Face ID. Free for up to 20 items.

  • Stored in the Keychain, never in plain text
  • Reveal or copy only after Face ID
  • Built-in strong password generator
Moat encrypted password vault unlocked with Face ID

Switch in a minute

Bring everything over, fast.

Move from Google Authenticator in one scan, then keep everything safe across devices with optional encrypted backup.

How two-factor codes work

Six-digit codes, no magic required.

Moat uses the same open standards the whole industry relies on. Here's what actually happens each time a fresh code appears.

1

A shared secret is stored

When you scan a QR code, the service's secret key is saved straight into your device's Keychain — never to our servers.

2

Your device does the math

Every 30 seconds Moat combines that secret with the current time using TOTP (RFC 6238) to compute a one-time, six-digit code — fully offline.

3

You sign in safely

Enter the code alongside your password. Even if your password leaks, an attacker can't get in without the code only your phone can generate.

Built on published standards — TOTP (RFC 6238) and HOTP (RFC 4226) — so your codes work everywhere. See how we protect the secret →

Security, in plain terms

Protection you can actually verify.

No vague promises. Here's exactly how your data is protected — and why even we can't read it.

Encrypted on your device

2FA secrets and passwords live in the iOS Keychain, protected by device encryption and excluded from unencrypted backups. They never leave in readable form.

End-to-end encrypted sync

Turn on backup and everything is encrypted on-device before upload with AES-256-GCM. Our servers only ever store ciphertext.

Keys derived from your recovery key

Your key is derived with PBKDF2-SHA256 at 210,000 iterations (current OWASP guidance), with random salts. Keys never leave your device.

Zero-knowledge by design

We have no ability to read your secrets or passwords. Lose your recovery key and not even we can restore them — that's the point.

No ad tracking, no ads

No advertising SDKs, no ad identifiers, no third-party logo fetches; product analytics is anonymous and opt-out. We don't sell or share your data — there's nothing to sell.

Open, published standards

Codes follow TOTP (RFC 6238) and HOTP (RFC 4226), so they work with thousands of services worldwide.

Read the full security overview →

A higher bar for your second factor.

Most authenticators generate codes. Few are built so the company behind them genuinely can't read your data.

Capability
Moat
Google
Authenticator
Authy
Microsoft
Authenticator
Offline TOTP / HOTP codes
End-to-end encrypted backup
not E2E
not E2E
Zero-knowledge (provider can't read)
No ads, no ad tracking, nothing sold
Built-in encrypted password vault
One-scan import from Google Auth
Custom icons & folders

Based on publicly documented features as of 2026. Competitor capabilities may change — always check their current documentation.

Pricing

Start free. Upgrade when you outgrow it.

Everything you need to protect your most important accounts — with no ads and nothing to sell, ever.

No hidden fees · 7-day free trial on Premium · cancel anytime.

Free

Protect a starter set of accounts, fully on-device.

$0/forever

No account required

  • Up to 10 accounts
  • Vault for 20 passwords & API keys
  • Offline TOTP & HOTP codes
  • On-device Keychain encryption
  • Face ID lock & App Switcher blur
  • Password breach monitoring
  • End-to-end encrypted backup
  • Sync across your devices
Best value
Premium · Yearly

Everything in Premium, one simple plan.

✦ 7-day free trial
$14.99/year

≈ $1.25/month · billed annually

7 days free, then $14.99/year. Cancel anytime.

  • Everything in Free, plus:
  • Unlimited accounts, passwords & API keys
  • Password breach monitoring
  • End-to-end encrypted backup
  • Sync across your devices
  • Live codes on Apple Watch
  • Priority support

Prefer to pay once? Lifetime is available in the app — $29.99, one time.

We never see your cardProcessed securely by Apple or Paddle
7-day free trialNo charge if you cancel in time
Cancel anytimeManage via Apple ID or your Paddle receipt
No ads, no ad trackingNothing to sell — ever

Premium is billed via Apple (iPhone) or Paddle (web) and unlocks on every device you sign in to.
Compare every feature on the full pricing page → or read the refund policy.

We collect no personal data.
Your data is yours alone.

No sign-up required. No ads, and nothing sold — only anonymous, opt-out analytics. The only data that ever leaves your device is end-to-end encrypted — and we can't read it. Read our privacy policy →

Questions, answered.

Still curious? Reach us anytime on the support page.

Yes. Moat is free to protect up to 10 accounts, with full on-device encryption and offline codes, plus a built-in vault for 20 passwords & API keys. Premium unlocks unlimited accounts and vault items, password breach monitoring, and end-to-end encrypted backup & sync for $14.99/year with a 7-day free trial — or a one-time $29.99 lifetime purchase in the app.

No. Moat is zero-knowledge by design. Your secrets live in the iOS Keychain, and any cloud backup is end-to-end encrypted on your device with AES-256-GCM before it's uploaded. We only ever store ciphertext we cannot read.

Yes. Codes are generated entirely on your device using TOTP (RFC 6238) and HOTP (RFC 4226), so no internet connection is needed to view or use them.

In Google Authenticator, choose Transfer accounts → Export accounts to display a QR code, then scan it with Moat — or import a screenshot. All your accounts come over in one step. You can also paste otpauth:// links or enter setup keys by hand.

If you enabled encrypted backup, install Moat on your new device and enter your recovery key to restore everything. Because the recovery key never leaves your device, only you can restore your data — keep it somewhere safe.

Thousands. Any service that supports standard two-factor authentication — Google, GitHub, Microsoft, Apple, Instagram, Slack, Netflix, Spotify and many more — works with Moat through the open TOTP and HOTP standards.

Protect every account in minutes.

Free to start. Upgrade anytime for unlimited accounts, encrypted backup, and sync across your devices.

Download on the App Store