Mage
part of the camera library and Mage never needed it.
Encrypt or decrypt files to age recipients or passphrases, including armor, multi-recipient, and encrypt-to-self. SSH keys (ssh-ed25519, ssh-rsa) work as recipients and identities alongside native age keys, and can be mixed on one file.
Identities are sealed in the Android Keystore (AES-256-GCM, StrongBox where available) behind biometric or device-credential authentication. Recipients get a small address book with QR encode/scan for sharing a public key.
Batch mode encrypts or decrypts more than one file at a time into a folder. Your identity vault can be exported and re-imported as an encrypted backup, so it isn't stuck on one device.
Mage hooks into the system where it makes sense: share-sheet targets, a .age file-manager association, launcher shortcuts, and a Quick Settings tile.
Mage does not implement its own cryptography — that is kage's job. It is not a general-purpose file manager or password manager, and it does not support the age-plugin mechanism, which relies on binaries on $PATH and does not work on Android.
Mage requests no network permission and makes no network connections.
- Author: Nick Haghiri
- License: Apache License 2.0
- Issue Tracker
- Source Code
- Changelog
- Build Metadata
- Reproducibility Status
Versions
Although APK downloads are available below to give you the choice, you should be aware that by installing that way you will not receive update notifications and it's a less secure way to download. We recommend that you install the F-Droid client and use that.
Download F-Droid-
arm64-v8aarmeabi-v7ax86x86_64This version requires Android 8.0 or newer.
It is built and signed by the original developer, and guaranteed to correspond to this source tarball.
Download APK 3.9 MiB PGP Signature | Build Log
-
arm64-v8aarmeabi-v7ax86x86_64This version requires Android 8.0 or newer.
It is built and signed by the original developer, and guaranteed to correspond to this source tarball.
Download APK 3.9 MiB PGP Signature | Build Log
improves biometric unlock support on older or budget devices, and adds
a recovery path if a biometric change invalidates the vault key.
Encryption is now more reliable on non-standard storage backends, and
copied private keys are hidden from clipboard history.





