Aliasvault

Privacy-first password manager with built-in email aliasing. Fully encrypted and self-hostable.

Cybersecurity & Ethical HackingTypeScriptAGPL-3.0

Abstract

Aliasvault is an open-source Cybersecurity & Ethical Hacking project. Privacy-first password manager with built-in email aliasing. Fully encrypted and self-hostable. Built on 15 years of experience, AliasVault is independent, open-source, self-hostable and community-driven. It’s the response to a web that tracks everything: a way to take back control of your digital privacy and help you stay secure online. It is built using TypeScript, Docker. Key capabilities include: Core password & alias management; Full end-to-end encryption; Built-in email server for aliases. The complete source code is publicly available on GitHub under the GNU Affero General Public License v3.0, making it a useful reference for students building a Cybersecurity & Ethical Hacking mini project or final-year project.

1. Introduction

Built on 15 years of experience, AliasVault is independent, open-source, self-hostable and community-driven. It’s the response to a web that tracks everything: a way to take back control of your digital privacy and help you stay secure online.

– Leendert de Borst (@lanedirt), Creator of AliasVault

AliasVault is a privacy-first password and email alias manager. Create unique identities, strong passwords, and random email aliases for every website you use. Fully end-to-end encrypted, with a built-in email server and zero third-party dependencies.

2. Objective

Privacy-first password manager with built-in email aliasing. Fully encrypted and self-hostable.

This project demonstrates how TypeScript, Docker can be applied to a real-world Cybersecurity & Ethical Hacking problem.

3. Key Features / Modules

  • Core password & alias management
  • Full end-to-end encryption
  • Built-in email server for aliases
  • Easy self-hosted installer
  • Browser extensions with autofill feature (Chrome, Firefox, Edge, Safari, Brave)
  • Built-in TOTP authenticator
  • Import passwords from traditional password managers
  • iOS native app
  • Android native app
  • Editing in browser extension

4. Technology Stack

TypeScriptDocker

5. System Requirements

General requirements for this technology stack — check the README for exact versions.

  • Node.js (LTS) and npm / yarn / pnpm
  • VS Code or any code editor
  • Git (to clone the repository)

6. Installation & Setup

git clone https://github.com/aliasvault/aliasvault.git
cd aliasvault
# Download and run install script
curl -L -o install.sh https://github.com/aliasvault/aliasvault/releases/latest/download/install.sh

# Make install script executable and run it. This will create the .env file, pull the Docker images, and start the AliasVault containers.
chmod +x install.sh

./install.sh install

Full setup instructions are in the project README.

7. Future Enhancements

Suggested extensions you can add to make this your own project.

  • Add logging and alert notifications (email / Telegram)
  • Write a threat model document for the tool
  • Package it with Docker for safe lab testing

8. Viva / Review Questions

Common questions examiners ask for projects in this domain.

  1. Which threat or attack does this project defend against?
  2. What detection or protection technique is used and what are its limits?
  3. How are false positives and false negatives handled?
  4. Which cryptographic algorithms or security standards are involved?
  5. What legal and ethical rules apply when testing a tool like this?

9. Source Code & License

This project is developed by aliasvault and published on GitHub under the GNU Affero General Public License v3.0. Please follow the license terms and credit the original author when you use or modify this code.

Want to build this as your internship project?

Work on a Cybersecurity & Ethical Hacking project like this with mentor guidance, weekly reviews and an internship certificate from Training Trains, Erode — online or offline.

Apply for Cybersecurity & Ethical Hacking Internship