đŸ–Ĩī¸ iKeePass for macOS - All Features

Discover all features of the iKeePass app for your Mac. Professional password management with full KeePass compatibility.


đŸŽ¯ Overview

iKeePass for macOS offers powerful password management in a proven 3-column layout - similar to Apple Mail or Finder. Seamlessly switch between passwords, dashboard, and OTP codes.

View Layout Description
Passwords 3 Columns Sidebar + List + Details
Dashboard 2 Columns Sidebar + Analysis
OTP 2 Columns Sidebar + OTP Codes

📐 Adaptive Column View

Make the window narrower and iKeePass switches from three columns to two: the detail view slides over the list, and a back button takes you out again. The selection survives the switch - you do not end up back at the top of the list.


🔐 Password Management

Professional 3-Column View

  • Sidebar (left) - Navigation, folders, recent entries
  • List (middle) - All passwords in selected folder
  • Details (right) - Complete entry details with 6 tabs

Folder Organization

Organize your passwords in a clear tree structure:

  • Unlimited folder nesting
  • 70+ KeePass icons to choose from
  • Drag & Drop for moving (planned)

Search and Filter Function

Function Description
Quick Search Search by title, username, or URL
Sorting By title, username, modification date
Sort Direction Ascending or descending
Archive Filter Hide archived entries

⚡ No delay: Even in databases with more than 2,000 entries, filtering and clearing the search happen instantly - no stutter while typing.

Context Menu (Right-Click)

Right-click on an entry for quick access:

Action Description
Edit Open and edit entry
Copy Username To clipboard
Copy Password To clipboard
Open URL In browser
AutoType Auto-fill
Move To another folder
Archive Move to archive
Delete With confirmation

🔑 Entry Details

The detail view is organized in 6 tabs:

Tab 1: Password

  • Username with copy button
  • Password with show/hide toggle (eye icon)
  • URL with link to open in browser
  • AutoType button for automatic entry
  • “Copied” feedback on every action

Tab 2: Details

  • All fields clearly displayed
  • Notes with Markdown support (toggleable)
  • Tags and keywords
  • Custom fields
  • Creation and modification dates

Tab 3: Files

  • List of all attachments
  • File size display
  • Download function
  • Preview depending on file type

Tab 4: Analysis

  • Password strength from 0-100%
  • Rating: Weak / Medium / Strong
  • Have I Been Pwned check
  • Duplicate detection
  • Age analysis (>90 days)
  • Improvement recommendations

Tab 5: History

  • Chronological change timeline
  • Compare historical versions
  • Restore capability
  • Timestamps for each change

Tab 6: Database

  • KDBX version information
  • Encryption details
  • File size and metadata

📊 Security Dashboard

Analyze all your passwords at a glance:

Security Score (0-100%)

Factor Impact
Weak password -3% per entry
Duplicate password -5% per group
Expired entry -2% per entry
Compromised password -5% per entry

Statistics Overview

  • Total number of entries
  • Number of folders
  • OTP entries
  • Compromised passwords
  • Weak passwords
  • Duplicates

Have I Been Pwned

Check all passwords against the HIBP database:

  • One-click check for all passwords
  • Progress indicator during check
  • k-Anonymity: Your password is never transmitted
  • Results are kept - The outcome is stored as a field inside the entry in your own database instead of being fetched again on every start. Less network traffic, and the history stays visible.
  • Recheck a single entry - A button on the entry rechecks exactly that password instead of walking through the whole database

Additional Sections

  • Duplicates - Grouped display of reused passwords
  • Password Age - Entries older than 90 days
  • Quick Actions - Quick actions for improvement

âąī¸ One-Time Passwords (OTP)

Manage your two-factor authentication directly in iKeePass:

Features

Feature Description
Real-time Codes 6-digit TOTP codes
Global Timer Countdown with progress bar
One-Click Copy Code instantly to clipboard
Auto-Refresh Codes update automatically

Supported Algorithms

  • SHA1 (Standard, Google Authenticator compatible)
  • SHA256
  • SHA512

đŸ”ĸ OTP Detail View

The "…" button next to each code opens a view of its own:

Item Description
Issuer / Account Who issues the code and for which account
Type TOTP (time based) or HOTP (counter based)
Digits 6, 7 or 8
Interval 30 seconds by default
Algorithm SHA1 / SHA256 / SHA512
Current code With remaining time and a copy button
Secret Only revealed on an explicit click

OTP entries can also be created directly from an otpauth:// URI - for example from a QR code you photographed.


âŒ¨ī¸ AutoType - Automatic Entry

One of the most powerful features: AutoType automatically enters your credentials.

How It Works

  1. Open the login page in your browser
  2. Select the entry in iKeePass
  3. Click “AutoType” or use the keyboard shortcut
  4. iKeePass automatically types username, tab, password, enter

Supported Placeholders

Placeholder Function
{USERNAME} Enter username
{PASSWORD} Enter password
{URL} Enter URL
{TITLE} Enter title
{TAB} Press Tab key
{ENTER} Press Enter key
{DELAY X} Wait X milliseconds
{TOTP} Enter current OTP code

Important

AutoType requires Accessibility permission in macOS:

  1. Open System Settings → Privacy & Security
  2. Select “Accessibility”
  3. Enable iKeePass

→ Detailed AutoType Guide


đŸ–Ĩī¸ Menu Bar Mode

Use iKeePass as a discreet menu bar app without a Dock icon:

Activation

  1. Open Settings → Startup
  2. Select “Display Mode: Menu Bar”
  3. The Dock icon disappears

Functions

Action Result
Left-click Show main window
Right-click Open context menu

Context Menu

  • Show Window
  • Open Settings
  • Quit iKeePass

🔓 Touch ID

Unlock your database conveniently with Touch ID:

  • Quick access without password entry
  • Password securely stored in macOS Keychain
  • Can be enabled per database
  • Can be disabled at any time

🔒 Auto-Lock

Your database is automatically locked:

On Screen Lock

When you lock your Mac or the screensaver starts, the database is automatically locked.

After Timeout

Choose a timeout in settings:

  • Immediately (0 minutes)
  • After 1, 3, 5, or 15 minutes
  • Never (not recommended)

🔑 Password Generator

Create secure passwords with the integrated generator:

Presets

Preset Length Properties
Secure 20 All character types, no ambiguous
Simple 12 Only letters and numbers
PIN 6 Only digits
Passphrase 24 No special characters
Custom Variable All options selectable

Options

  • Length - 4 to 128 characters
  • Lowercase - a-z
  • Uppercase - A-Z
  • Numbers - 0-9
  • Special Characters - !@#$%…
  • Exclude Ambiguous - 0, O, l, 1, I
  • Exclude Similar - {}, [], ()
  • Minimum Numbers
  • Minimum Special Characters

Features

  • Real-time preview
  • Copy button
  • Regenerate
  • Password history

📤 Export

Export your database for backup purposes:

Formats

Format Description
JSON Machine-readable
XML Compatible with other tools

âš ī¸ Important Notice

Exported files are unencrypted! Treat them like your master password.

Keyboard Shortcuts

  • ⌘⇧E - Export as JSON
  • ⌘âŒĨE - Export as XML

âŒ¨ī¸ Keyboard Shortcuts

Shortcut Action
⌘O Open database
⌘⇧E Export as JSON
⌘âŒĨE Export as XML
⌘⇧G Generate password
⌘, Open settings
Escape Close dialog
Return Confirm

âš™ī¸ Settings

Settings are organized in 5 tabs:

Startup

  • Launch at login (Login Item)
  • Display mode (Dock or Menu Bar)
  • Open last database on startup

General

  • Default sorting
  • Archive folder name
  • Exclude archive from search

Security

  • Auto-Lock timeout
  • Lock on screen lock
  • Auto-clear clipboard
  • Show passwords by default
  • Enable/disable AutoType

Appearance

  • Theme settings

About

  • Version information
  • Documentation links

đŸ“Ļ Archive Feature

Clean up old passwords without deleting them:

  • Archive instead of Delete
  • Custom Folder - Name freely configurable
  • Search Exclusion - Optional
  • Dashboard Exclusion - Doesn’t affect the score

🌐 Browser Integration

iKeePass fills credentials straight into the browser - without a detour through the clipboard.

Chrome Extension

  • Local only - Extension and app talk over a TCP connection on localhost; no packet leaves your Mac
  • Two-stage lookup - The exact domain first, then matching subdomains, so mail.example.com still finds the entry for example.com
  • HTTP basic auth - The classic browser login dialog is filled too, including a save field for credentials you just typed
  • Consent per request - The app asks before it hands out a secret

→ Set up the Chrome extension

Safari Web Extension

Safari has a web extension of its own that uses the same local bridge - no extra background service required.

đŸ•ĩī¸ Request Log

A dedicated dialog logs every request the browser extensions make:

Column Content
Time When the request arrived
Browser Which browser was recognised (Chrome, Safari, â€Ļ)
Request The address or entry asked for
Result Granted or denied

So it is always traceable who asked for which credentials, and when.


🔑 AutoFill in Safari and Other Apps

Besides AutoType, iKeePass registers as an AutoFill provider with macOS:

  1. Open System Settings → General → AutoFill & Passwords
  2. Enable iKeePass
  3. Done - Safari and other apps suggest matching entries right at the login field
AutoType AutoFill
Mechanism Simulated keystrokes Official Apple interface
Permission Needs accessibility access No special permission
Works in Any app Safari and AutoFill capable apps

đŸ“Ĩ Import from the Apple Passwords App

Bring passwords, verification codes and passkeys over from the Apple Passwords app:

  • Credential Exchange (FIDO CXP) - encrypted handover between the two apps, without an unencrypted export file on disk
  • Preview before the import - every item is listed first
  • Duplicate check - entries you already have are recognised, not duplicated
  • Target folder - the import lands where you want it
  • Marked with đŸ“Ĩ - imported entries stay recognisable
  • Rollback - as long as you have not saved, the whole import can be undone

âąī¸ Auto Logout

Beyond the auto lock, iKeePass can sign itself out after a chosen time - the database is closed, not just locked.

â„šī¸ The setting is stored inside the KDBX file, so it applies on every device that opens the same database - your Mac and your iPhone behave the same way.


Your entries can be found from the macOS Spotlight search:

  • Title, user name and URL are indexed - never the password
  • Selecting a result opens the entry directly in iKeePass
  • The index can be switched off and rebuilt in the settings
  • Closing the database removes the index again

🚀 Raycast Plugin

For Raycast users there is a plugin of its own:

  • Search entries without switching windows
  • Paste user name, password or the current OTP code
  • Jump back into the app via the ikeepass:// URL scheme

🤖 MCP Agent for AI Assistants

iKeePass can be driven by AI tools such as Claude Code through the Model Context Protocol (MCP) - with several locks in front of it:

Lock Effect
Off by default MCP access has to be switched on deliberately
Database must be open Nothing happens against a locked database
Double budget A grant is limited by time and by number of accesses
Confirmation per secret Every single password is confirmed separately
Access history Every access is logged and can be reviewed

34 tools in seven groups cover search, entries, folders, OTP, analysis, database and administration - including creating OTP entries from an otpauth:// URI.


đŸ’ģ System Requirements

Requirement Value
macOS Version 14.0 (Sonoma) or newer
Processor Apple Silicon or Intel
RAM 4 GB (8 GB recommended)
Storage 100 MB

Supported Database Formats

Format Version Status
KDBX 4.x (Argon2) ✅ Full support
KDBX 3.x (AES) ✅ Full support
KDB 1.x ✅ Basic support