# lesspass/lesspass

:key: stateless open source password manager

Repository: https://github.com/lesspass/lesspass
Canonical: https://ross.abutalabs.com/products/lesspass
Homepage: https://www.lesspass.com
Language: TypeScript
License: GPL-3.0
License Family: copyleft
Topics: lesspass, password-manager, password, passwords, privacy, anonymous, self-hosted
Last push: 2026-08-12T05:32:46+00:00

## Health v2 (maintenance only)
Score: 76/100 (v2, computed 2026-09-03T02:20:16.233290+00:00)
- activity 97, release rhythm 35, longevity 100
- inputs: {"age_days": 3919, "days_push": 21, "days_rel": null, "gap_med": null, "n_releases_24m": 0}
- flags: no_releases
- formula: round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)

## Adoption (not part of the score)
Stars 6053, forks 360 (observed 2026-08-28T04:09:34.663679+00:00)

## What it is
LessPass is a stateless, open-source password manager that deterministically generates site-specific passwords from a single master password plus site/login options, eliminating the need to sync an encrypted vault. It ships as browser extensions for Chrome and Firefox, mobile apps for iOS and Android, a Python CLI, and a web-based generator with an optional self-hostable server.

## Use cases
- generate unique passwords for websites without storing a vault
- access my passwords from any device without syncing
- manage passwords with just one master password
- self-host a password manager server
- generate passwords from the terminal
- fill login forms in the browser with a keyboard shortcut

## When to choose
- you want a vault-free, deterministic password manager with no sync infrastructure
- you need the same passwords across browsers, phones, and the terminal
- you prefer self-hosting or fully offline password generation
- you value privacy and anonymity and dislike trusting cloud vaults

## When to avoid
- you need to store existing arbitrary passwords, secure notes, or files
- you must rotate a compromised password without changing the master password or profile options
- you want shared team password vaults with access control
- you rely on a hosted service for new accounts (server registrations are closed)

## Facets
- artifact type: application
- maturity: active
- function: security, cryptography, cli, browser-extension
- domain: security, privacy, developer-tools, cross-platform
- platform: browser, cli, self-hosted, cross-platform
- tags: password-manager, stateless, password-generator, deterministic-passwords, no-sync, android, ios, web-server

## Member repositories
- lesspass/lesspass (main) score 76

## Provenance
- Observed fields: from GitHub, fetched 2026-08-28T04:09:34.663679+00:00.
- Health v2: computed from the inputs above; adoption is never an input.
- Inferred fields (summary, facets, guidance): AI-extracted, prompt v1, taxonomy v1, on 2026-08-29T17:48:55.108309+00:00, confidence not recorded.
  - readme: https://github.com/lesspass/lesspass (fetched 2026-08-28T04:09:34.663679+00:00, sha 48d7f61bc20e)
  - homepage: https://www.lesspass.com (fetched 2026-08-29T08:45:18.536851+00:00, sha 4dc65551c945)
- Data as of 2026-08-30T08:39:29.467469+00:00.
