overview

Lockat is a privacy-first two-factor authentication app built natively for iOS. It generates time-based one-time passwords (TOTP) to protect your online accounts — with no trackers, no analytics, and no data leaving your device.

Your secrets stay on your device, stored in the iOS Keychain and protected by Apple's hardware-level encryption. Account metadata syncs seamlessly via iCloud, ensuring your codes are available on every iPhone, iPad, and Mac signed in with your Apple ID.

The app was designed to be secure by default, allowing you to lock access with Face ID, Touch ID, or your device passcode. It also supports easy migration from Google Authenticator and offers folder-based organization to keep your accounts organized your way.

design choices

palette

security black #000000
accent blue #007AFF

typography

SF Pro / interface
Private, secure, and simple.

some fonts used in this project are proprietary and may not display correctly if they are not installed on your system.

rationale

The design focuses on high-security aesthetics and extreme ease of use, following Apple’s Human Interface Guidelines for native iOS apps.

tech stack

SwiftUI
native UI framework
Keychain
secure secret storage
iCloud
metadata synchronization
LocalAuthentication
Face ID / Touch ID
CryptoKit
RFC 6238 compliant TOTP

credits

people

design · development
pedro wiezel