Secure
ISO 27001 certified development, infrastructure, and operations. Regular third-party pentests, including HackerOne, ensure security at every layer.
We're a European organization based in Spain, serving thousands of customers across the EU, in Germany, Austria, Switzerland, France, Spain, the USA, and beyond.

Passwork was born in Finland as a small security-focused company and has since grown into a stable European product business trusted by customers across the globe.
We relocated our headquarters from Finland to Spain, but kept our whole team and engineering culture intact. Our operations are aligned with the markets we serve, especially across the EU.
Today, we are a fully founder-owned independent company, free from outside capital. We prioritize quality, security, and long-term support.





We’re a remote-first company with a global team across Europe, Latin America, and Asia. This enables us to attract top talent while maintaining our home base in Europe, with Passwork Europe S.L. registered under Spanish and EU law.
Our company is driven by transparency, privacy, and user empowerment. We're fully GDPR-compliant and committed to best practices in data protection and secure software development.
We're proud of our European foundation — but our ambition is global. We are creating a secure infrastructure for you anywhere in the world.
Passwork started with a simple question: why do people ignore security tools?
Designers, engineers, sysadmins, and security specialists collaborated to find the answer — a password manager that's both secure and actually user-friendly.
Passwork started with a simple question: why do people ignore security tools?


Designers, engineers, sysadmins, and security specialists collaborated to find the answer — a password manager that's both secure and actually user-friendly.
The result: easy to use from day one. Secure without being rigid. Powerful without being complex. Built for any type of business and any team size, without slowing down the workflow.
While our SaaS offering is growing, the majority of our customers choose full infrastructure control and data isolation
With Passwork on‑premises, you own everything: data, systems, deployment architecture — no third-party access, no exceptions
Especially valued by large enterprises, government bodies, and organizations in highly regulated industries
Passwork is flexible — fast, scalable, and fully supported for 10 to 30,000+ users
For teams that need control, privacy, and compliance
Passwork on‑premise is the default choice
Our sales team speaks English, German, and Spanish — and works respectfully, transparently, and without pressure. We don't believe in bloated sales cycles or aggressive tactics. Just useful conversations.
When you become a client, you get a dedicated Customer Success specialist — someone who understands your environment and speaks with you in the same language.
A partnership‑first approach: no pressure, no hassle — just genuine support, and a team that treats you like a true partner, from your first demo to long‑term success.
The results: Increasing operational efficiency for cross‑border teams
Read full case study →At Passwork, we actively invest in building a strong, secure product and security-focused community. Through articles, surveys, and case studies, we obtain insight into how organizations actually manage security — day-to-day, under real-world constraints.
Cybersecurity theory is everywhere. What's missing is how things really work in practice. We give experts a platform to share what works — and what doesn’t.
We collaborate with CISOs, security teams, engineers, and IT professionals — both customers and partners.
Transparency is one of the principles that guides how we operate and how we build trust with our customers. As a provider of security software, we understand that our company, our product, and our corporate structure are subject to public scrutiny. We welcome thoughtful questions, independent audits, and constructive review, as they help strengthen both our product and our operations.
We want to provide complete clarity on Passwork’s origins, ownership, corporate structure, and technical architecture. Our goal is to give clear, accurate information about our company and product. To help customers, partners, and other interested parties better understand these topics, we have summarized the most common public claims about Passwork Europe S.L. and provided factual explanations supported by verifiable information.
The Passwork software was created in 2014 by developers of Russian origin. It was first incorporated in Europe in 2017 through the Finnish company Passwork Oy. Intellectual property rights were subsequently transferred to Passwork FZ-LLC, a company registered in the United Arab Emirates. In 2024, Passwork Europe S.L., a Spanish company, acquired from Passwork FZ-LLC the rights to develop, maintain, distribute and support the international Passwork product. Under that agreement a transition period runs until 30 August 2026, during which Passwork FZ-LLC provides source-code updates and technical knowledge transfer.
Below we answer the questions we are asked most often.
| Topic |
|---|
| Ownership and corporate structure |
| Product development and transition |
| Security architecture |
| Security verification |
| Product origin |
No, Passwork Europe S.L. is an independent Spanish company and it is not controlled by any Russian companies. Passwork Europe S.L. was founded in Barcelona in August 2024. Its sole shareholder and CEO is Alexander Muntyan, who acquired the intellectual property rights to the Passwork software from Passwork FZ-LLC, a UAE company, through a commercial asset acquisition. Alexander Muntyan is a Spanish tax resident and resides in Spain.
Passwork Europe S.L. has its own ownership, management, operations, customer relationships, and decision-making processes. It has no corporate affiliation with any Russian companies. The Russian company with the resembling brand operates within its domestic market, while Passwork Europe S.L. independently develops and supports customers in international markets.
The product's history is fully transparent. Passwork's European operations began in 2017 through Passwork Oy in Finland, and since then its European operations have continued through European legal entities. The establishment of Passwork Europe S.L. in Spain represents the latest stage of that development and reflects a commercial transfer of intellectual property and business operations. The original creators of the software hold no ownership interest, management positions, or decision-making authority within Passwork Europe S.L.
Today, Passwork Europe S.L. operates as an independent Spanish company with its own ownership, management, and responsibility for the product in international markets.
Passwork Europe S.L. acquired the rights to the Passwork software as part of a commercial transaction and is currently completing a structured technology transition. This transition is governed by a transitional services agreement with Passwork FZ-LLC (UAE company), which runs until August 30, 2026.
During this period, Passwork FZ-LLC provides source-code updates and technical knowledge transfer to support continuity for existing customers. This is a standard part of transferring and integrating an active software product.
Every update undergoes security verification before release, including software bill of materials (SBOM) analysis, software supply-chain analysis, static and dynamic application security testing (SAST/DAST), AI-assisted analysis and manual code review. All changes remain visible in the source code and are subject to independent verification by customers.
Because the European and Russian products originate from the same historical codebase, some version releases and release notes may appear on similar timelines. This reflects the shared technical origin of the software and the ongoing transition process, but does not indicate common administration between the Spanish and Russian operating companies.
Passwork Europe S.L. maintains administrative control over its own technical environment. Historical Cloudflare, DNS, analytics, or marketing configurations identified during the transition have either been separated, reviewed, or placed under Passwork Europe S.L.’s control. Passwork Europe S.L. also maintains dedicated infrastructure hosted within the European Union and administered by its own team.
No, Passwork’s technical architecture makes it impossible to access customer data regardless of who has reviewed the source code. Most Passwork Europe S.L. customers deploy the product on their own infrastructure. In this deployment model, all data remains within the customer's environment and can be deployed without Internet access. There is no central application server through which customer passwords, vaults or encrypted data pass. This can be independently verified by reviewing the source code or analyzing the application's network traffic. This means that Passwork Europe S.L. does not host, store, or have access to customer passwords, vaults, or server infrastructure.
Passwork follows a zero-knowledge architecture. Encryption and decryption take place on the client side using AES-256 encryption before data is transmitted or stored. As a result, encrypted data cannot be read by Passwork Europe S.L. or any external party without the customer's encryption keys.
The software is also available for customer source-code review, allowing companies to verify its functionality independently.
Yes, customers and independent experts can verify Passwork’s security. Customers receive the complete server-side application in readable source code and may conduct their own independent review. Our cryptographic architecture, including encryption algorithms, key hierarchy, and security parameters, is publicly documented to allow independent verification of the product's security model. Any connection used for update availability is separated from the encrypted customer database and does not provide remote access to it.
Updates are installed only with the customer's approval. Updates may be performed either semi-automatically, by running an update script that downloads signed update packages from Passwork Europe's update portal hosted in the European Union, or entirely manually by downloading the update archive and installing it offline. Customers may also restrict network access and review each new release before deployment. In both cases, every update is verified using a digital signature based on public-key cryptography. Without possession of the corresponding private signing key, it is technically impossible to substitute or tamper with the software distributed to customers.
In addition, Passwork regularly undergoes independent third-party security assessments, including a 2025 penetration test by HackerOne. It is also ISO/IEC 27001 certified. Passwork Europe S.L. welcomes independent source-code audits by security laboratories as part of customer security due diligence or procurement processes.
The statement "Developed in Europe" reflects the way Passwork is operated, developed, and supported for international customers today.
Since 2017, Passwork has been operated, deployed, and supported through European companies serving international markets. Today, Passwork Europe S.L. manages the product from its headquarters in Barcelona, Spain, with a dedicated team of independent contractors responsible for product management, customer support, operations, and technical oversight.
As part of the intellectual property acquisition, Passwork Europe S.L. is completing a temporary technology transition with Passwork FZ-LLC (a UAE company) that will conclude in August 2026. During this period, source-code updates and technical knowledge are transferred under a commercial agreement to ensure continuity for customers. This transition does not affect the company's governance, ownership, or day-to-day operations.
Every software update received during the transition is reviewed, validated, and integrated by Passwork Europe S.L.'s technical team before release. This includes software bill of materials (SBOM) analysis, software supply-chain analysis, static and dynamic application security testing (SAST/DAST), AI-assisted analysis and manual code review. All changes remain visible in the source code and are subject to independent verification by customers. Administrative, operational, and customer support data is processed within the European Union in accordance with GDPR requirements.
Passwork Europe S.L. is responsible for the software distributed to its international customers and for the ongoing development, maintenance, support, and security of that product.
Transparency is meaningful only when it can be supported by evidence. Rather than asking customers to rely solely on our statements, we provide multiple ways to independently verify the information presented on this page.
If you have additional questions about our company, product, or security architecture, our team will be happy to provide further information at [email protected].
If you haven't received the email, check your spam folder or contact us at [email protected]
Please click the button below to change the language
Switch to EnglishFill out the form below to get your copy of the report
Fill out the form below to get your copy of the NIS2 guide