Do these 3 things before closing this tab:
1Scan for outdated or missing drivers - takes under a minute2Clear out junk files and repair common Windows errors3Fix the driver behind crashes, sound loss and screen glitchesSecureGen is an open-source, do-it-yourself hardware project that combines TOTP and HOTP codes, a locally stored password vault, and password entry over Bluetooth. It is not a ready-to-use app or a verified preassembled device: you build and flash it onto supported ESP32 display hardware. The project’s creator describes the motivation as wanting “a physical 2FA device that I could trust completely”; that is a stated goal, not independent evidence of security.
What SecureGen does
SecureGen is designed to put authenticator codes and saved passwords on a small ESP32 device. Its project page, published by makepkg on Hackster on February 11, 2026, describes three main functions:
- TOTP: Generates time-based one-time passwords. The author says it is compatible with common authenticator services and RFC 6238 services.
- HOTP: Generates counter-based one-time passwords, advancing the counter when the user requests another code.
- Password Manager Mode: Stores passwords locally in encrypted form and can send them to another device as keystrokes over Bluetooth Low Energy (BLE) HID.
The project describes QR-based setup for authenticator entries, along with BLE and USB HID features in its repository. Compatibility claims come from the project author; the reviewed material does not establish independent compatibility testing. Hackster project page · SecureGen source repository
How TOTP works when the device is offline
TOTP codes depend on the current time. SecureGen’s project page says the device first synchronizes time over Wi-Fi using NTP, then can generate codes offline. For a build intended to keep accurate time without network synchronization, the author lists an optional DS3231 real-time clock module. The page states that this module has ±2 ppm accuracy; that is the project page’s specification, not an independent measurement.
Free tools Windows power users keep installed
One-click scans. No signup required.
#1 Best Overall
- 【Strong Adsorption】The inspiration of the silicone phone suction case comes from the adhesive force of the octopus. Each suction cup phone mount is 3.15 inches long and 2.17 inches wide, with 24 independent suction cups providing a stronger and more stable suction force, so you don't have to worry about your phone falling during use.
- 【Back of Phone Suction Grip】Remove the adhesive film on the phone suction cup and stick it on the phone case. You can then fix the phone on any smooth surface, which is very convenient. (The phone suction cup cannot be removed and reused after being attached to the phone case. It is recommended to attach it to a regular phone case, not a valuable one.)
- 【Widely Used】Our non-slip silicone phone sticky grip mount attaches to almost any flat phone case and make it compatible with common mobile phones such as iPhone and Android.You can shoot, watch videos or video calls in the kitchen, gym, dance studio, bathroom and other places.
- 【Capture the Wonderful Picture】Whether you are a TikTok creator or just like to share videos and photos, this phone suction cup can help you hands-free capture wonderful videos and photos for sharing with friends.
- 【Note】You can fix the phone suction cup on a smooth surface such as a mirror or glass. If necessary, wipe the suction cup with a damp cloth to obtain stronger suction. Before releasing your hand, make sure the phone is firmly fixed. (Not applicable to rough walls, wooden surfaces, and other uneven surfaces)
HOTP works differently: it uses a counter rather than a clock, and SecureGen advances that counter when the user asks for a new code. If the counter gets out of sync with the service, the project’s source instructions and the service’s recovery process matter; the reviewed descriptions do not spell out a universal recovery procedure.
Parts needed to build SecureGen
The project is a build-your-own device, not a finished product. The Hackster page names a LILYGO TTGO T-Display, while its build instructions specify a LILYGO T-Display ESP32 and USB-C cable. The GitHub repository also lists the T-Display-S3 as supported. Check the current repository instructions and select the correct board variant before flashing, since firmware and steps can differ by hardware.
Rank #2
- SUPERIOR COMFORT — Unlike traditional circular ear buds, the design of EarPods is defined by the geometry of the ear. Which makes them more comfortable for more people than any other ear bud–style headphones.
- HIGH-QUALITY AUDIO — The speakers inside EarPods have been engineered to maximize sound output and minimize sound loss, which means you get high-quality audio.
- BUILT-IN REMOTE — EarPods with USB-C plug also include a built-in remote that lets you adjust the volume, control the playback of music and video, and answer or end calls with a pinch of the cord.
- COMPATIBILITY — Works with all devices that have a USB-C port.
- INTEGRATED MICROPHONE — A built-in microphone precisely captures your voice while you’re on the phone, taking a FaceTime call, or summoning Siri — so you’re always heard loud and clear.
| Part | Role | Required? |
|---|---|---|
| LILYGO T-Display ESP32 development board | Core ESP32 display hardware for the build; the project page describes its display as a 1.14-inch, 135×240-pixel color TFT. | Yes, for the described T-Display ESP32 build. |
| USB-C cable | Used to connect the board for the build and flashing process. | Listed in the project’s “Try It Yourself” instructions. |
| DS3231 RTC module | Provides a real-time clock for offline timekeeping. | Optional; listed for offline TOTP timekeeping. |
| 3.7V LiPo battery with JST connector | Optional battery power. | Optional; verify connector and board compatibility before buying. |
The parts list identifies components, not a verified retail bundle: no current price, stock status, exact product listing, or finished SecureGen device sale is established by the project sources. The board is a development board for building the project, not a complete authenticator on its own.
What the project claims about security—and what remains unverified
The author says vault data is encrypted with AES-256-GCM and describes deriving a key from the PIN using PBKDF2-HMAC-SHA256 with 25,000 iterations. The project page itself says that iteration count is below OWASP 2023 recommendations because of ESP32 hardware constraints. It also says a hardware secure enclave is not present by default. Those qualifications matter: naming AES-256 alone does not establish that the whole device or its stored secrets are secure.
Rank #3
- Secure Hold: Our PopSockets adhesive phone grip gives your cell phone a secure, comfortable hold in hand to help prevent drops while texting, taking photos, or scrolling on the go. Designed to stick firmly to most phone cases and devices.
- Hands-Free Made Easy: Easily turn your PopSocket into a phone stand to prop up your phone anywhere, perfect for watching videos, video calls, or following recipes. A must-have phone holder that keeps your device secure and ready for anything.
- Compatibility: Works with all phones, tablets, and Kindles. Sticks best to smooth, hard plastic cases and may not adhere to silicone or textured cases. Easily swap your PopTop to change up your style.
- Black PopSockets: Simple, refined, and endlessly versatile. A timeless essential for any phone.
- Travel Must-Have for People On the Go: A must-have travel accessory for flights, flying, airports, air travel, airplanes, planes, international trips, cruises, and long travel days. Key gadget for your airport haul, travel accessories and must-haves.
For password entry, the author describes a device-side PIN check before BLE transmission, Wi-Fi disabled during password transmission, and BLE Secure Connections pairing. The page also describes an application-level encrypted web-management channel and an architecture with eight security-design layers. These are implementation descriptions by the project author, not results of an independent audit or comparative security test. The reviewed sources do not establish a completed third-party security review.
The author writes, “Security through obscurity is not security. Security through architecture is,” and invites readers to inspect the open-source code. Public code can make inspection possible, but the invitation is not evidence that an audit has occurred or that every build matches the published source.
Rank #4
- [360 ° Flexible Rotation Design] Comes with a rotatable lanyard ring that supports 360 ° free rotation, effectively solving the problem of twisted and tangled lanyards
- [Wide compatibility] The ultra-thin 0.02-inch design does not block the charging port at all, and both wired and wireless charging can be used directly without removing the pad. Compatible with most smartphones such as iPhone, compatible with various wristbands, lanyards, crossbody straps, and keychains
- [Durable and Portable Material] Premium rust-resistant stainless steel material with good flexibility, which not only avoids scratching the phone case, but also has excellent anti rust and anti fading performance
- [Multi scenario Practical] Paired with a lanyard or wristband, hands-free use can be achieved. The phone is within reach and not easily dropped, ideal for daily commuting and outdoor activities. Suitable for full coverage phone cases, does not support half coverage phone cases
- [Quality Service] If you find any damage or other issues with the product upon receipt, please contact us immediately. We will handle it quickly
Is SecureGen a good fit for you?
SecureGen is most relevant to someone who wants to build and inspect a dedicated hardware authenticator and password-entry device, and is comfortable following board-specific flashing instructions and maintaining a DIY device. It combines visible TOTP/HOTP codes with a local password vault and BLE keyboard-style entry, which differs from both software authenticator apps and commercial hardware security keys.
Before choosing it, weigh the practical differences:
Best Value
- 【PKYAA Double Sided Silicone Suction Phone Case Mount】PKYAA With Double Sided 40 Strong and Reliable individual suction cups, PKYAA provides a thicken and upgraded universal silicon suction mount for your phone.
- 【Friendly to Content Creators】If you are a content creator or an online influencer, you can create videos anywhere with this suction mount completely hands free with this silicone cell phone mount for cases.
- 【HANDS-FREE & Adhere to Mirrors】This Double Sided silicone suction phone case mount allows you to stick your phone to the mirror easily. No longer holding your phone in one hand to watch video tutorials while making up.
- 【Strong Grip on the Smooth Surface】You can easily hang your phone anywhere with a smooth surface. All you do is you clean off your phone and smooth surface. It is STURDY and it not only sticks to mirrors, it also sticks to windows, it sticks to refrigerators, tiles and other clean, flat surfaces.
- 【Press Down Firmly Every 30 Minutes】Use your palm or fingers to press the phone down firmly and check it's secure before letting go. Apply even pressure for a few seconds to allow the suction cup to adhere properly. To maintain the grip and prevent accidental falls, it's a good practice to periodically reapply pressure to the suction cup.
- Setup: SecureGen requires compatible hardware, firmware flashing, and maintenance; a software app is typically ready to install, while a commercial security key is generally a prebuilt product.
- Authentication flow: SecureGen displays TOTP/HOTP codes. A hardware security key instead handles supported authentication flows and is not simply a screen for showing time-based codes.
- Password use: SecureGen describes local vault storage and BLE keyboard entry; that is a distinct capability to evaluate against how you currently enter and protect passwords.
- Time and connectivity: TOTP needs correct time. The described setup uses initial Wi-Fi time synchronization, with an optional RTC for offline timekeeping.
- Security evidence: The project publishes design claims and source code, but the reviewed sources do not show an independent security audit.
- Maintenance and parts: A DIY build depends on compatible hardware, current firmware instructions, and your ability to troubleshoot or rebuild it; finished products reduce that assembly burden but differ in features and trust assumptions.
These are decision criteria, not proof that one category is categorically safer. The right choice depends on whether you prioritize a ready-to-use experience, code display, local password entry, inspectable source, or an independently reviewed product.
Quick Recap
Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.

