Crypto Investor
Holdings that make you wealthy also make you a target for physical coercion. DeniableOS lets you show a decoy wallet, one an attacker can actually empty, while your real holdings stay in the hidden vault.
Forced to unlock, they see a normal phone. Your real data stays invisible — on GrapheneOS.

One device, two environments — a different PIN opens each.
Try each PIN to experience what an attacker would see.
Try 1234 to reveal.
Try 9999 to reveal.
Android’s built-in call function. It does not protect your data — DeniableOS adds the duress PIN above for that.
Encryption protects your data, until someone forces you to unlock your phone. In high-risk environments, standard mobile security isn't enough.

Backed by
Holdings that make you wealthy also make you a target for physical coercion. DeniableOS lets you show a decoy wallet, one an attacker can actually empty, while your real holdings stay in the hidden vault.
At many borders a device can be copied without a warrant. Unlock to the public environment and the phone is clean, with no secrets to find.
Sources trust you with their lives. Deniable encryption means you can cooperate with authorities without betraying anyone, because there is no last key visible to surrender.
Privileged client data on a confiscated device. The decoy profile passes inspection while the real work sits in encrypted storage until you are back in the office.
Technical lineage
No command line. No flashing tools. No technical skills needed.
From a supported Pixel to a deniable daily driver, without a desktop app, a USB drive, or a command line. Here is the whole path.
Supported Pixel + USB-C + Chromium. Web installer flashes DeniableOS like GrapheneOS does. No desktop app needed.
Public PIN for visible life. Hidden PIN for the hidden vault. Duress PIN, entered under coercion, wipes the vault silently.
Use the public environment every day. Switch to the hidden vault with your Hidden PIN. When forced to unlock, show the public one.
GrapheneOS protects you by deleting everything. We protect you by showing a life you can surrender.
Coercion response
Hidden storage
Forensic inspection
Target user
Price
| Criterion | GrapheneOS | DeniableOS |
|---|---|---|
| Coercion response | Wipe (empty phone, suspicious) | Convincing public environment |
| Hidden storage | None | Encrypted, indistinguishable from noise |
| Forensic inspection | Reveals wipe occurred | Passes, nothing to find |
| Target user | Technical privacy enthusiasts | Anyone who might be forced to unlock |
| Price | Free (donationware) | From $29.99/mo, paying for the decoy |
Stopped and searched, the phone shows an ordinary, working device. Sources and files stay in the hidden vault, out of reach.
In public the device looks and behaves like any other phone, so it never draws attention at a checkpoint.
Staying unremarkable is the work. The public environment is a complete, normal phone, with nothing to flag.
Even when authorities inspect the device, the sensitive material sits in an encrypted volume they cannot prove exists.
Order a phone that's already a fortress, or license the Pixel you own — monthly, yearly, or once for lifetime.
Pre-installed phones from $899→The Deniable Web Dashboard gives teams a simple, powerful way to deploy, manage, and revoke devices, all without compromising security.
Issue and revoke licenses, only authorized devices run Deniable OS.
Remotely revoke access if a phone is lost or compromised, disable it instantly.
Deploy at scale, easily activate and track hundreds or thousands of devices.
Push OS and security updates across your fleet without physical access.
No MDM fingerprint visible on the device. Admin control stays invisible.
Granular permissions, audit logs, and team-level policy enforcement.

15 minutes to install. Normal life still works. Nothing to disclose. 14-day refund if your device isn't compatible.