LockFlare

Platform

One app, two platforms. Lens runs on macOS (Intel and Apple Silicon, one universal app, signed and notarized by LockFlare Corp) and on Windows (a signed installer and a portable exe). Same map, same key drive, same features on both; the Windows build has no biometric step and keeps the console shortcuts on Ctrl+Shift so the shell keeps its Control keys. Downloads and checksums come from lockflare.com; a build identifies itself in About and on the command line.

No server, no account, no telemetry. Nothing Lens does depends on a LockFlare service being up. Licenses are signed keys opened on the computer, the model catalog for Themis is refreshed only from a button, and Lens never calls home. Everything Lens keeps — the map, the saved logins, the certificate vault, the repository secrets, the API keys, the audit ledger — lives on the computer sealed under the key drive's own signature, and rides the encrypted backup on the drive.

Every protocol spoken directly. SSH to the boxes; S3, Azure Blob, Google Cloud Storage, SFTP, FTP, WebDAV, SMB and NFS to the repositories; MongoDB, MariaDB, PostgreSQL, Redis and Valkey through their own clients on the box. No agents, no vendor SDKs, no cloud in between.