ํ”ผ๋“œ๋กœ ๋Œ์•„๊ฐ€๊ธฐ
I Built a Zero-Knowledge Password Manager (Self-Hosted, Fully Open Source) โ€” Looking for Contributors ๐Ÿš€
Dev.toDev.to
Security

์ž๊ฐ€ ํ˜ธ์ŠคํŒ… ์ œ๋กœ์ €nowledge ๋น„๋ฐ€๋ฒˆํ˜ธ ๊ด€๋ฆฌ์ž๋ฅผ Flutter๋กœ ๊ตฌ์ถ•ํ•จ

I Built a Zero-Knowledge Password Manager (Self-Hosted, Fully Open Source) โ€” Looking for Contributors ๐Ÿš€

qqwer2026๋…„ 4์›” 2์ผ4๋ถ„beginner

Context

๊ธฐ์กด SaaS ๊ธฐ๋ฐ˜ ๋น„๋ฐ€๋ฒˆํ˜ธ ๊ด€๋ฆฌ์ž(LastPass, 1Password, Bitwarden)๋Š” ํƒ€์‚ฌ ์„œ๋ฒ„์— ๊ธˆ๊ณ ๋ฅผ ์ €์žฅํ•จ. ์ œ๋กœ์ €nowledge ๋งˆ์ผ€ํŒ…์€ ๋ฐ์ดํ„ฐ๋ฅผ ์ฝ์ง€ ์•Š๊ธฐ๋กœ ์•ฝ์†ํ•œ ๊ฒƒ์ด์ง€ ์ฝ์„ ์ˆ˜ ์—†๋Š” ๊ฒƒ์ด ์•„๋‹˜. ์‚ฌ์šฉ์ž์—๊ฒŒ ๋ฌผ๋ฆฌ์  ์„œ๋ฒ„ ํ†ต์ œ๊ถŒ์ด ์—†์Œ.

Technical Solution

  • End-to-End Encryption: ๋ชจ๋“  ๋ฏผ๊ฐ ๋ฐ์ดํ„ฐ๊ฐ€ ํด๋ผ์ด์–ธํŠธ์—์„œ ์•”ํ˜ธํ™”๋˜์–ด ์„œ๋ฒ„๊ฐ€ ํ‰๋ฌธ์„ ์ ˆ๋Œ€ ๋ณผ ์ˆ˜ ์—†์Œ
  • Self-Hosted Architecture: ์ง‘ ์„œ๋ฒ„, VPS, Raspberry Pi ๋“ฑ ์‚ฌ์šฉ์ž๊ฐ€ ๋ฌผ๋ฆฌ์ ์œผ๋กœ ์ œ์–ดํ•˜๋Š” ์ธํ”„๋ผ์— ๋ฐฐํฌํ•จ
  • Flutter: ํฌ๋กœ์Šค ํ”Œ๋žซํผ ๋ชจ๋ฐ”์ผ ์•ฑ์œผ๋กœ ๋น„๋ฐ€๋ฒˆํ˜ธ์™€ ์•”ํ˜ธ ์‹œ๋“œ ๋ฌธ๊ตฌ๋ฅผ ์ €์žฅํ•จ
  • TOTP (2FA), Biometrics, PIN: ๋‹ค์–‘ํ•œ ์ž ๊ธˆ ํ•ด์ œ ๋ฐฉ๋ฒ•์„ ์ง€์›ํ•˜์—ฌ ์œ„ํ˜‘ ๋ชจ๋ธ์— ๋งž๊ฒŒ ์„ ํƒ ๊ฐ€๋Šฅํ•จ
  • ๋ชจ๋“ˆํ˜• ์„ค๊ณ„: ํ™•์žฅ์„ฑ์„ ๊ณ ๋ คํ•œ ์ˆจ๊น€ ๋ชจ๋“ˆ(TOTP, ์ธ์ฆ ํ”Œ๋กœ์šฐ ๋“ฑ) ๊ตฌ์กฐ๋กœ ์šด์˜๋จ

Impact

์ดˆ๊ธฐ ๋‹จ๊ณ„ ํ”„๋กœ์ ํŠธ๋กœ ๋ณด์•ˆ ๊ฐ์‚ฌ ๋ฏธ์™„๋ฃŒ ์ƒํƒœ์ž„. ์™„์ „ํžˆ ์˜คํ”ˆ์†Œ์Šค์ด๋ฉฐ ์ปค๋ฎค๋‹ˆํ‹ฐ ๊ธฐ์—ฌ๋ฅผ ํ†ตํ•ด ๋ฐœ์ „ ์ค‘์ž„.

Key Takeaway

์ง„์ •ํ•œ ๋ฐ์ดํ„ฐ ์™„์ „ ์†Œ์œ ๊ถŒ์€ ๋ฌผ๋ฆฌ์  ์„œ๋ฒ„ ํ†ต์ œ์™€ ์•”ํ˜ธํ•™์  ์„œ๋ฒ„ ๋งน๊ฒฌproof ์„ค๊ณ„์˜ ๊ฒฐํ•ฉ์œผ๋กœ๋งŒ ๋‹ฌ์„ฑ ๊ฐ€๋Šฅํ•จ.


ํ”„๋ผ์ด๋ฒ„์‹œ ์šฐ์„  ๋ณด์•ˆ ์•ฑ ๊ฐœ๋ฐœ ์‹œ ํด๋ผ์ด์–ธํŠธ ์‚ฌ์ด๋“œ ์•”ํ˜ธํ™”๋ฅผ ํ•„์ˆ˜๋กœ ๊ตฌํ˜„ํ•ด์•ผ ํ•จ. ์‚ฌ์šฉ์ž๊ฐ€ ์ง์ ‘ ์ œ์–ดํ•˜๋Š” ์ธํ”„๋ผ์—์„œ ์šด์˜ํ•˜์—ฌ ์ œ๋กœ์ €nowledge๋ฅผ ๋งˆ์ผ€ํŒ…๊ฐ€์น˜๊ฐ€ ์•„๋‹Œ ๊ธฐ์ˆ ์  ์‚ฌ์‹ค๋กœ ๋ณด์žฅํ•  ์ˆ˜ ์žˆ์Œ.

์›๋ฌธ ์ฝ๊ธฐ