Simplicity in design.Security in every touch.
KD Labs crafts refined, 100% offline mobile applications engineered with hardware-backed cryptography and uncompromising privacy.
Google Play Standard
100% Developer Policy Compliant
Offline-First Security
On-device local data storage
Ultra-Low Footprint
Battery optimized, under 10MB
Zero Cognitive Noise
No intrusive ads or guilt tricks
Upcoming Project
Upcoming release from KD Labs: Simple OTP - A 100% offline 2FA authenticator with hardware-backed encryption and interactive companion mascots.
Simple OTP
com.duybk.simpleotp
High-security, 100% offline 2FA/OTP authenticator with hardware-backed encryption, paired with joyful interactive companion mascots.
Core Security Pillars:
- 100% Offline (Zero-Network Architecture): No internet permissions, 0 telemetry sent outwards
- Hardware-backed Vault Key: Derived via PBKDF2 (100k iterations) & AES-256-GCM
- RFC 6238 (TOTP) & RFC 4226 (HOTP) compliant with SHA-1, SHA-256, SHA-512 support
- Multi-channel ingestion: Live camera QR scanner, gallery photo decode, clipboard auto-detect, manual key

Active Lab Projects & Reserve Slots
Kanso Focus
Minimalist Pomodoro timer paired with ambient nature soundscapes, designed to cultivate deep work without cognitive noise.
- Customizable Pomodoro timer intervals
- High-quality ambient soundscapes
- 100% Offline with zero ads
Ứng dụng mới (Slot trống)
Pre-configured reserve slot. You can easily add your next mobile application to src/data/apps.ts.
- Automatically creates dedicated app route
- Instant Google Play download button support
- Full bilingual EN / VI compatibility
Zen Aesthetics & Hardware Cryptography
We believe enterprise-grade security should not feel intimidating. It should exist quietly, elegantly, and provide absolute peace of mind.
100% Offline (Zero-Network)
Architected with zero internet permissions. Your secret keys and 2FA tokens never leave your physical device.
Hardware Vault Enclave
Master Vault Key derived via PBKDF2 (100,000 rounds) and locked in Android Keystore / iOS Keychain using AES-256-GCM.
Delightful Companions
Security meets warmth. The Bé Khóa (Lock-bot), Cipher Cat, and Byte Dog companions react joyfully to every token generation.
Open Source Transparency
Fully open source under the MIT license. The security community is welcome to independently inspect every line of code.
Google Play Data Safety Standards
At KD Labs, your cryptographic data belongs exclusively to you. We strictly honor Google Play Developer Data Safety commitments.
Zero Network Tracking
0 network calls, 0 third-party telemetry SDKs, 0 user tracking cookies.
Minimal Permissions
Camera is only used for live QR scanning. Audio/mic permission is completely stripped. Biometrics stay inside system enclaves.
No Data Brokerage
We build software as independent open-source creators. We never sell, monetize, or log user data.
Connect with KD Labs
Have feedback, want to contribute to the codebase, or join early beta testing for Simple OTP? We are always glad to connect.
All official KD Labs applications are digitally signed and distributed exclusively via the Google Play Store for absolute security.
Frequently Asked Questions
Can Simple OTP generate codes on Airplane Mode or without Wi-Fi?
Yes, 100%! Simple OTP is designed with an offline-first cryptographic engine that generates standard RFC 6238/4226 tokens completely locally.
How do I transfer accounts to a new device?
You can use the Encrypted Backup feature to export a password-protected .simpleotp file encrypted with AES-256-GCM and import it onto your new phone.
Is Simple OTP open source?
Yes! The complete source code is public and auditable on GitHub (github.com/001123/simple-otp) under the permissive MIT license.