808bits

SQLCipher Cryptographic Module (Mobile)

FIPS 140-2 certificate #4707 · Zetetic, LLC · data as of 2026-08-28
Active. Sunset date 2026-09-21, 23 days away. This is the FIPS 140-2 sunset: after it, agencies may keep the module only in existing systems.
Caveat: When operated in FIPS mode. The module makes no assurance of the minimum strength of random strings and generated keys

Certificate

Certificate number4707
StandardFIPS 140-2
Statusactive
Sunset date2026-09-21
Overall level1
Module typeSoftware
EmbodimentMulti-Chip Stand Alone
VendorZetetic, LLC · website
Software versions2.1.2

Module description

The SQLCipher Cryptographic Module is a cryptographic engine that integrates with SQLCipher, enhancing encrypted database operations with a trusted security layer. SQLCipher provides full database encryption and data integrity protection for local storage at rest. This module guarantees that all data stored and retrieved through SQLCipher is encrypted, decrypted, and verified using a reliable implementation for applications demanding high levels of data security.

Security level exceptions

  • Physical Security: N/A
  • Design Assurance: Level 3
  • Mitigation of Other Attacks: N/A

Approved algorithms

AlgorithmCAVP certificate
AESA4947
CKGvendor affirmed
DRBGA4947
DSAA4947
ECDSAA4947
HMACA4947
RSAA4947
SHSA4947
Triple-DESA4947

Tested configurations

  • Android 8 running on a Galaxy Nexus 5X with a Qualcomm Snapdragon 808
  • iPadOS 15 running on an Apple iPad Air 2 with an Apple A8X (single-user mode)

Validation history

DateTypeLab
2024-06-11InitialLeidos Accredited Testing & Evaluation (AT&E) Lab

Status timeline

As observed by this tracker's snapshots. NIST publishes no dates for list moves; observation began 2026-08-21, so earlier changes carry no date.

  • 2026-08-21: first observed by this tracker, status active
  • Validation dates on record: 2024-06-11

Source documents