ZTPass Key Manager is a centralized management tool for ZTPass products, allowing users to personalize security settings, manage authentication protocols. It is available on Android, iOS , macOS and Windows.
Manage Your ZTPass Authenticators in Minutes.
Manage PIN/PUK and management keys, enable FIDO2 or PIV, import/export certificates - all from a clean user interface.
Common Use Cases
Passwordless Workforce Login
FIDO2/WebAuthn, device-bound credentials, user-verified flows (PIN optional).
Smart-Card Access (PIV)
Government and enterprise login with certificate-backed identity.
Digital Signatures
Manage keys for secure email and document signing.
Policy-Driven Hardening
Enforce touch policies, NFC/USB controls, and per-role defaults.
How It Works
Install
Install ZTPass Key Manager for desktop or mobile.
Connect
Connect your key (USB) or tap (NFC) to discover the device.
Configure
Configure security, protocols, and credentials with step-by-step screens.
What You Can Do With The Key Manager App
Personalize Security
Set PIN/PUK, change management keys.
Control Protocols
Turn FIDO2/WebAuthn and PIV (Smart Card) on or off per device.
Manage Keys & Certs
Generate RSA, ECC, Ed25519 keys; import/export certificates.
Stay Current
Check firmware and applet versions; reset device.
Control Connectivity
Enable/disable USB and NFC interface.
Features
Device Dashboard
View connected security keys, registered devices, and current status. Automatically detects devices via NFC (iOS/Android) or USB
(Android).
Security Setup
PIN/PUK, management key rotation, touch requirement.
FIDO2 Manager
Manage FIDO2 credentials including PIN setup, PIN change, credential listing, editing display names, and secure deletion. Supports NFC and USB where applicable.
PIV Administration
Perform PIV operations in USB mode including PIN/PUK management, Admin Key rotation, certificate viewing, and full PIV reset.
Certificate Viewer
Securely view stored X.509 certificates by slot with detailed metadata including subject, issuer, validity, key type, and signature algorithm.
Hardware-Enforced Security
All sensitive operations require PIN verification and physical device interaction (tap or touch). Private keys never leave the
hardware device.