Overview
Password Manager provides secure storage and sharing of team passwords, API keys, and credentials. Features include role-based access, audit logging, and encrypted storage.
Highlights
Capabilities
Secret Storage
-
Encrypted-at-rest storage for passwords and notes
-
Personal (private) password vault per user
-
Team (shared) password vault
-
Optional notes field (also encrypted at rest)
-
Website URL linked to each entry
-
Custom categories with icon and color
-
Tags on entries for cross-category grouping
-
Favorite / quick-access entries
-
Archive and restore entries without deletion
Sharing & Access Control
-
Public shared entries (all app users can view)
-
Restricted shared entries (selected groups only)
-
Per-entry group-based access grants (view or edit)
-
Per-entry individual user access grants
-
Admin controls who can create team passwords
-
Cross-org password federation Scoped to single business
Security & Authentication
-
Require 2FA before viewing any password
-
Password masking in list view (admin-configurable)
-
Username masking in list view (admin-configurable)
-
Optional password expiration date per entry
-
Admin-configurable default expiry window
-
Expiring-soon dashboard and filtered list
Generators & Strength
-
Secure in-browser password generator (crypto API)
-
Real-time password strength meter (4-level)
-
Show / hide toggle on password input field
-
Admin toggle to disable strength indicator
Audit Logging
-
Immutable audit log per entry (view, copy, create, update, delete)
-
Access grant and revoke events logged
-
Archive, restore, and expiry events logged
-
AI agent retrieval events logged separately
-
Admin analytics dashboard (30-day access counts)
-
Most-accessed shared entries report
-
Export audit log to CSV View only; export planned
AI Agent (Ask AI)
-
Password Agent in Ask AI (natural-language retrieval)
-
Create, update, and delete passwords via Ask AI
-
Semantic / vector search (finds "WiFi" from "wireless credentials")
-
Respects per-user access permissions in AI context
-
Admin toggle to enable or disable the agent
Limits & Specs
-
Max personal entries per user: Admin-configurable (0 = unlimited)
-
Default expiry look-ahead: 30 days (admin-configurable)
-
Audit log retention: Admin-configurable, minimum 30 days
-
System categories: Wi-Fi, Software, Team Accounts, API Keys, Vendor Portals, Social Media, Banking
-
Generated password length: 16 characters (alphanumeric + symbols)
-
Browser extension / autofill: Not available; web-only
-
Pricing: Included with MangoApps Workforce
Use cases
FAQ
All credentials are encrypted at rest. Access requires authentication, and optional 2FA can be required before viewing any password.
Yes. Shared entries support public (all employees) and restricted access levels. Admins can limit shared-entry creation to specific groups.
Every view, copy, and edit is recorded in the audit trail with the user, timestamp, and action type. Admins can review logs in the analytics section.
Entries with expiration dates appear in the expiring-soon list. Admins can configure the look-ahead window (default 30 days) for alerts.