Where Does gopass Store Passwords?
gopass keeps encrypted stores in ~/.local/share/gopass with config in ~/.config/gopass for mounts.
Last updated
gopass stores secrets as GPG encrypted files inside password store folders. The default store lives under local share in the user home, with extra mounts defined in the config file. Git tracks each store for history and sync.
Recipients come from .gpg-id files in each folder. Changing recipients re encrypts the tree on next write. Config points mounts at local paths or clones, keeping the layout flexible across machines.
Where gopass stores this, by platform
~/.local/share/gopass/stores
Default root store with .gpg-id per folder. Mounts in ~/.config/gopass/config.yml add more. Sync through git remotes per store.
~/.local/share/gopass/stores
Same XDG layout on Mac. GPG keys come from your keyring setup. Pinentry prompts handle decryption per session.
Frequently asked questions
How do I move gopass to a new machine?
Import your GPG keys first, then clone each store to the same mount paths. Config in .config/gopass travels with them. Test decryption before deleting the old side.
Where are gopass recipient keys?
In .gpg-id files per folder naming who can decrypt. Subfolders can narrow recipients further. Re encrypt after membership changes.
Notice an outdated path? Let us know.