Skip to content

FiSSH

F-Droid

Open source

SSH authentication via Fingerprint scanning over network (TLS Sockets)

Version
7.1
Size
13.3 MB
Updated
Jun 20, 2026
Get from Download APK (v7.1)
Signing certificate on record

About this app

This Android app stores your SSH key phrase and sends it to your PC securely via the LAN when an authorized fingerprint is detected by the Android fingerprint scanner.

This app is free open-source software (licensed MIT)

The PC must either run Linux or Windows to use FiSSH.

FiSSH for Linux is available on GitLab together with install instructions at: https://www.gitlab.com/ioanm/fissh-desktop/blob/master/INSTALL.md.

FiSSH for Windows uses the Windows Subsystem for Linux. The Windows edition is also open source and published to: https://www.gitlab.com/ioanm/fissh-windows.

To install FiSSH for Windows run the command inside WSL (Windows Subsystem for Linux) UBUNTU distro: curl https://www.gitlab.com/ioanm/fissh-windows/raw/master/Release/install.sh | sudo bash

The PC app then returns the received passphrase to OpenSSH and the standard ssh binary completes the login process.

It is important to note that none of the FiSSH apps have access to private key file and that FiSSH uses TLS sockets with certificate validation to prevent man-in-the-middle attacks!

Source Code: Linux part - https://www.gitlab.com/ioanm/FiSSH-Desktop Android app - https://www.gitlab.com/ioanm/FiSSH-App

Licensed under MIT, by Ioan Moldovan.

OfficialSignature VerifiedOpen Source

What's New in v7.1

Imported from the F-Droid repository index.

Version history

v7.1Latest
Signature continuous

Jun 20, 2026 · 13.3 MB · Android API 2337 · code 71

Imported from the F-Droid repository index.

USE_BIOMETRICINTERNETUSE_FINGERPRINTdev.ioanm.fissh.DYNAMIC_RECEIVER_NOT_EXPORTED_PERMISSION

SHA-256 9ad918d780e3b95e043e064d4eb9e015ceea29c84632550d4acc7debd9598e5b

v7.0
Signature continuous

Jun 18, 2026 · 13.3 MB · Android API 2337 · code 70

Imported from the F-Droid repository index.

USE_BIOMETRICINTERNETUSE_FINGERPRINTdev.ioanm.fissh.DYNAMIC_RECEIVER_NOT_EXPORTED_PERMISSION

SHA-256 956faa9a8a8b53566b3dd1c20e5564df40e5b1d073143e0c6a62688cb16b2624

Will it run on your device?

CompatibilityVery likely to run

92%

  • Runs on a broad range of modern Android versions.
  • Multiple CPU architectures are covered.
  • Aligned with the latest Android target SDK expectations.
What changed in this release
Size delta
0 MB
Added permissions
None
Removed permissions
None

Installation Guide

1

Open Settings on your Android device

2

Go to Security → Unknown sources (or Install unknown apps)

3

Enable "Allow from this source" for your browser or file manager

4

Open the downloaded APK file from your Downloads folder

5

Tap "Install" and wait for installation to complete

6

Launch the app from your home screen

Make sure to re-enable Unknown Sources restrictions after installation for security.

How to install this safely

How to verify the file you downloaded

Before you install anything, confirm the file is the one described here. On a computer, run shasum -a 256 your-download.apk (macOS or Linux) or certutil -hashfile your-download.apk SHA256 (Windows), then compare the output character-for-character with the SHA-256 on this page. If a single character differs, the file is not the build we recorded — delete it.

What the signing certificate proves

Every Android app is signed with a private key that only its developer holds. The fingerprint on this page is a hash of the matching public certificate, and it proves continuity rather than identity: it tells you a build came from whoever signed the earlier ones. Android enforces this at install time — if a package claiming to be dev.ioanm.fissh is signed with a different key, the system will refuse to install it over your existing copy. A fingerprint that changes between releases is worth pausing on, because a repackaged app that has been modified by someone else cannot keep the original signature.

How to roll back to an earlier version

If the current release misbehaves, 7.0 is the last build before it. Android will not install an older version code over a newer one, so you must uninstall FiSSH first — which clears its local data unless you have a backup. Reinstall the older APK only if its signing fingerprint matches the build you already trust, and check the API range: an older release may target an Android version your device has moved past.

Why we list sources instead of hosting everything

The official store channel is almost always the right choice: it updates automatically and carries the publisher's own distribution guarantees. A direct APK is useful when a device has no store access, when a rollout has not reached your region, or when you need a specific version — and only when the publisher has authorized that copy. APKBrowse does not list pirated, cracked, or unauthorized rebuilds of FiSSH, and a listing is removed when the evidence for it stops holding up.

Get FiSSH

Every source we list for dev.ioanm.fissh is legality-reviewed. Pirated or cracked builds are never offered.

Other sources

F-Droid listing

official

F-Droid builds this app from source and signs it. This is its official listing, with older builds and full release notes.

Source code

verified publisher

The upstream repository this build is compiled from.

We check legality and signature continuity, but device behaviour still varies. Install at your own discretion.

App Information

Developer
F-Droid
Category
Developer Tools
Android
6.0+
Architectures
arm64-v8a, armeabi-v7a, x86, x86_64
Version
7.1 (code 71)
Size
13.3 MB
Updated
Jun 20, 2026
Package name
dev.ioanm.fissh

Security Verification

File integrity
SHA-256 recorded
Signing certificate
Fingerprint on record
Official source
Download APK (v7.1)

We record provenance; we do not run malware scans. Verify the hash yourself before installing.

SHA-256 Hash

9ad918d780e3b95e043e064d4eb9e015ceea29c84632550d4acc7debd9598e5b

Signing certificate

23aa15152de3b3ae610e273567ba220f5db3d6cdff0feb0a275cdf9facd63833

Permissions Required

USE_BIOMETRIC
INTERNET
USE_FINGERPRINT
dev.ioanm.fissh.DYNAMIC_RECEIVER_NOT_EXPORTED_PERMISSION

Previous Versions

Signature verified

The signing certificate fingerprint for this release is on record, so a build that does not match it did not come from this publisher.

Report a problem with this listing

A listing is only as good as its corrections. If a source is broken, a signature looks wrong, or this app should not be here, tell the moderation team.

Report a problem