CipherKem — FIPS 203 ML-KEM
NIST CAVP A7970 · FIPS 203 ML-KEM · FIPS 204 ML-DSA · Made in Singapore

Encrypt & Decrypt Files & Folders Offline.
Quantum-Safe.

CipherKem encrypts and decrypts your documents and folders for a specific recipient or group using post-quantum key encapsulation — entirely on your machine. No shared secret, no password exchange, no cloud. Your files and keys never leave your computer.

Envelope verification free forever · Unlimited encryption & decryption on every paid plan · No cloud

Get Started in Three Steps

From download to your first encrypted file.

1

Install from Microsoft Store

Install CipherKem on the Microsoft Store for Windows 10 or 11. Envelope verification works immediately — free, no account needed. Find your Machine ID under Settings → License.

2

Subscribe with One Click

Choose a plan from Pricing below and click Subscribe Now. Complete payment on our secure Stripe checkout (card or PayNow). Then email your Stripe receipt + Machine ID to [email protected] — we reply with your cipherkem.lic within 1 business day.

3

Activate, Generate Identity & Encrypt/Decrypt

Open cipherkem.lic in CipherKem (Settings → License → Browse), generate your CipherKem identity, exchange Contact Cards with your peers out-of-band, and start encrypting and decrypting files and folders — entirely offline.

What's Free. What Requires a Subscription.

Anyone can verify an envelope's sender authenticity forever — at zero cost. Encrypting, decrypting, and managing identities requires a subscription.

Free Forever — No License Required

These work permanently, with or without a subscription.

  • Verify any envelope's sender signature Confirm who encrypted a file and that it wasn't tampered with — free forever for every recipient, regardless of the sender's current license status.
  • Verify a signed group descriptor Confirm a group's membership and configuration were signed by a trusted party.
  • Delete a CipherKem identity Local cleanup; you must be able to remove stale keys.
  • Activate a CipherKem identity Switch the active identity. Cannot encrypt without a license, but enables recovery on renewal.
  • Export your Contact Card Share your public identity (.card file) with peers so they can encrypt files for you — available for any identity on your machine, even one restored without a license.
How it works under the hood: CipherKem uses NIST FIPS 203 ML-KEM (key encapsulation) to establish a unique shared secret per session — no passwords exchanged. Each session is also signed with NIST FIPS 204 ML-DSA so the recipient can verify who sent it. Encryption uses AES-256-GCM with HKDF-derived keys. Everything runs offline on your Windows machine.

Protocol at a glance

1. Identity

Each user generates a keypair: ML-DSA-44 for signing + ML-KEM-768 for encapsulation (configurable to ML-KEM-512 or ML-KEM-1024). Stored as a .identity file. The public half is exported as a self-signed .card file to share with peers.

2. Contact Exchange

Share your .card file with a peer out-of-band (email, USB, QR). CipherKem prompts you to verify the card's fingerprint with the peer directly — a call or in-person confirmation — before trusting it.

3. Envelope (Channel Setup)

The sender uses the recipient's KEM public key to encapsulate a shared secret (.envelope file). The envelope is signed with the sender's DSA key so the recipient can confirm who created the session.

4. Parcels (Encrypted Files)

Each file is encrypted with AES-256-GCM using a key derived from the session secret via HKDF. Produced as a .parcel file. The whole session folder — envelope + parcels — is sent to the recipient.

Pricing

Three plans. All include unlimited encryption and decryption, all three ML-KEM security levels, group broadcast support, and envelope verification free forever for every recipient. Licenses are per-machine.

✓ Envelope verification is free forever for you and every recipient. No account needed to verify.

Individual Monthly

Solo professionals · 1 machine

S$19/mo

Billed monthly

 


  • Unlimited encryption & decryption — no caps
  • 1 machine
  • ML-KEM-512 / 768 / 1024
  • Unicast & group broadcast
  • NIST CAVP Certificate A7970
  • Recipients verify free forever
  • Email support
Subscribe Now →

Individual Annual

Solo professionals · 1 machine

S$180/yr

Billed annually

Save 21% vs monthly


  • Unlimited encryption & decryption — no caps
  • 1 machine
  • ML-KEM-512 / 768 / 1024
  • Unicast & group broadcast
  • NIST CAVP Certificate A7970
  • Recipients verify free forever
  • Email support
Subscribe Now →

Business Annual

Teams · up to 5 machines

S$660/yr

Billed annually

5 machines included


  • Unlimited encryption & decryption — no caps
  • Up to 5 machines
  • ML-KEM-512 / 768 / 1024
  • Unicast & group broadcast
  • NIST CAVP Certificate A7970
  • Recipients verify free forever
  • Email support
Subscribe Now →
Secured by Stripe  ·  Card and PayNow accepted
Your payment is processed securely. We never see your card details.
1
Click Subscribe Now You'll be taken to a secure Stripe checkout page (or email us directly to subscribe).
2
Email your receipt + Machine ID Send your Stripe receipt and Machine ID (from Settings → License) to [email protected].
3
Receive your license file We'll email your cipherkem.lic file within 1 business day.
License is machine-specific and final. Each license is bound to a single machine. All purchases are FINAL — no refunds. Verify CipherKem works for you using the free envelope verification feature before subscribing.

Contact Us

For subscriptions, license transfers, or support — email us directly.

support at cipherplus dot io

Terms of Use — Summary

The full terms appear inside CipherKem on first launch. Below is a plain-language summary of the key points. Last updated: June 2026.

1. License & Business Model

Envelope signature verification and group descriptor verification are free forever, as are deleting, activating, and exporting the Contact Card of an identity already on your machine. Generating a new identity, encrypting files or folders, decrypting parcels, and creating or signing groups each require an active subscription. The same license covers all paid operations — no separate purchase.

2. Verification is Free Forever

The right to verify envelope sender authenticity and group descriptor signatures is granted to all users permanently and unconditionally, regardless of license status. This right cannot be revoked.

3. No Refunds

All license purchases are FINAL. No refunds, exchanges, or money-back guarantees. Verify CipherKem works for you using the free envelope verification feature before subscribing.

4. License is Per-Machine

Each license is personal, non-transferable, and bound to a single machine. To move a license to a new machine, email us with your old and new Machine IDs.

5. Identity and Key Loss is Your Responsibility

Your CipherKem identity is stored only on your machine. If you lose the identity file, CIPHERPLUS cannot recover it and you will be unable to decrypt any parcel addressed to that identity. Previously encrypted parcels addressed to a lost identity are unrecoverable. Back up your identity file immediately.

6. You Verify Real-World Identity

You are responsible for verifying the real-world identity of parties whose Contact Cards you import — confirm their fingerprint out-of-band (phone, video, in person) before relying on it for encryption.

7. As-Is, No Warranties

CipherKem is provided "AS IS" without warranty of any kind. CIPHERPLUS makes no warranties regarding merchantability, fitness for a particular purpose, or non-infringement.

8. Limitation of Liability

To the maximum extent permitted by applicable law, CIPHERPLUS PTE. LTD. shall not be liable for any indirect, incidental, special, consequential, or punitive damages arising from your use of CipherKem.

9. Files You Encrypt

You are solely responsible for the files you encrypt, the recipients you send them to, and ensuring your use of CipherKem complies with all applicable laws, including export controls and data-protection regulations.

10. v1 Forward Secrecy Limitation

CipherKem v1 uses Static KEM mode. The confidentiality of a decrypted parcel depends on the recipient's long-term private key remaining secret. A future compromise of that key could allow an adversary who recorded the original session to decrypt past parcels. Document this for any deployment requiring long-horizon confidentiality.

11. Cryptographic Disclaimer

CipherKem uses NIST FIPS 203 (ML-KEM) and NIST FIPS 204 (ML-DSA), validated under NIST CAVP Certificate A7970. No cryptographic system can guarantee absolute security in all circumstances. Consult a qualified advisor for your specific needs.

12. Governing Law — Singapore

These Terms are governed by the laws of the Republic of Singapore.