Payment Cryptography.

Decoded.

51 cryptographic tools, an HSM simulator, and an AI assistant — everything payment engineers need to build, test, and validate against the standards. DUKPT, PIN blocks, EMV ARQC, TR-31, ISO 8583 and more, all running in your browser. Built for conformance testing, never for production data. The calculators and the payShield simulator are free with an account; the bench around them — named keys, test cards, replayable batteries, evidence dossiers — is what is paid.

PCI Security Standards Council
Thales
ISO
EMVCo
ANSI
NIST
Visa
Mastercard
American Express
PCI Security Standards Council
Thales
ISO
EMVCo
ANSI
NIST
Visa
Mastercard
American Express
PCI Security Standards Council
Thales
ISO
EMVCo
ANSI
NIST
Visa
Mastercard
American Express
PCI Security Standards Council
Thales
ISO
EMVCo
ANSI
NIST
Visa
Mastercard
American Express
PCI Security Standards Council
Thales
ISO
EMVCo
ANSI
NIST
Visa
Mastercard
American Express
PCI Security Standards Council
Thales
ISO
EMVCo
ANSI
NIST
Visa
Mastercard
American Express
PCI Security Standards Council
Thales
ISO
EMVCo
ANSI
NIST
Visa
Mastercard
American Express
PCI Security Standards Council
Thales
ISO
EMVCo
ANSI
NIST
Visa
Mastercard
American Express
[ 03 ] Scope & safety

Built for conformance.
Not for production data.

KeyLab is a testing tool for engineers validating implementations against payment standards. Here's how to use it — and how not to.

[ 01 ]SYNTHETIC INPUTS · NO PROD SECRETS

Test data only

Use synthetic test vectors (e.g. PAN 4111111111111111). Never paste production PINs, PANs or live keys — PCI DSS forbids it, and so do we.

SCOPE/TESTING_ONLY · PCI_DSS_3.x · CONFORMANCE
[ 02 ]THIRD-PARTY ORACLES

Checked against other implementations

Nothing here is trusted because we wrote it. Key blocks are checked against psec and openemv/tr31, DUKPT against the published X9.24-3 vectors, host commands against payShield traces, PIX signatures against signxml. 1,023 tests on every build.

PSEC · OPENEMV_TR31 · X9.24-3_VECTORS · SIGNXML
[ 03 ]AUDITABLE LIBRARIES

Open-source crypto

Built on @noble/curves, @noble/post-quantum and node-forge. Auditable, peer-reviewed. Inspect what runs before you trust it.

NPM/NOBLE_SUITE · NODE_FORGE · PEER_REVIEWED
[ 04 ]PCI · ISO · EMV · ANSI

Standards-compliant

ISO 9564, ANSI X9.24 (DUKPT), PCI DSS, EMV, TR-31 / X9.143. The specs you already audit, implemented faithfully so you can validate against them.

SPEC_LIB/ISO9564 · X924_DUKPT · TR31_X9143

Run it on test data. Check it against the spec. Then move it to your audited stack.

51Cryptographic Tools
37Host Commands
1,023Tests on every build
111Console Commands
LEGACY TOOLKIT — VENDOR BUILD_×
FileEditViewHelp
PIN Block
3DES
CVV
KEK
TLV
EMV
LMK
PVV
MAC
XOR
! Windows only. Request access.v3.04
Download×
!

ERROR: No public download. Contact the vendor to request access.

OK

Cluttered. Windows-only. Gated.

Request access from the vendor.

KeyLab

FAST. RELIABLE. FREE.

Built by engineers, for engineers.

Runs in the browser
Nothing to install
Get Started Free

Frequently Asked Questions

Everything you need to know about KeyLab and payment cryptography tools.

Thiago Alonso — Founder of KeyLab

Meet the Founder

Thiago Alonso

Founder & Creator of KeyLab

I've spent most of my career deep in the payment security stack — from HSM operations and key management to PCI compliance and cryptographic architecture. After years of working with tools that were either too expensive, too outdated, or simply frustrating to use, I built KeyLab: the platform I wished existed when I started.

KeyLab is built by someone who actually uses these tools daily. Every feature comes from real-world experience, not assumptions.

Nearly a decade in payment cryptography & compliance
HSM specialist — Thales payShield, Kryptus kNET
PCI DSS, PCI PIN, ISO 27001, NIST, FIPS, Common Criteria
Connect on LinkedIn
[ 09 ] Open a channel
Found a bug. Have an idea.
Want to collab.
[ TX/01 ] CONTACT_FORM

Encrypted in transit · No tracking · Max 2000 chars