At a glance.
| Question | Lockpic | Google Photos Locked Folder |
|---|---|---|
| Access secret | Separate 5×5 vault pattern; optional biometric unlock after setup | Device screen lock or Google Account password, depending on platform and backup state |
| Account required | No | Google Photos and backed-up access use a Google Account |
| Cloud backup | No built-in cloud; user exports an encrypted backup | Optional Locked Folder backup across signed-in devices |
| App internet permission | None | Google Photos is an online photo service |
| Recovery | Recovery phrase plus encrypted backup for device loss | Google account/device access; device-only items can be lost if not backed up |
| Cost | 25 items per vault free; lifetime Pro planned | Included with Google Photos; backed-up items use account storage |
The honest case for Locked Folder.
It is already inside an app many Android users understand. Moving an item is simple, protected media stays out of the normal grid, and optional backup makes it available across devices. For keeping sensitive pictures away from someone casually browsing your gallery, it may be entirely sufficient.
Google's documentation clearly states that Locked Folder is protected by the device screen lock or Google Account password. That simplicity is also its boundary: someone who knows the relevant device credential may be able to open it.
What Lockpic changes.
Lockpic establishes a separate vault secret rather than inheriting the phone's screen lock. It has no account, cloud vault, advertising SDK, or app internet permission. Every valid pattern opens a vault or an empty space, so there is no visible “wrong pattern” test or master vault list.
Availability is user-managed: an exported encrypted backup and recovery phrase replace automatic account recovery. That creates more responsibility and less service dependency.
Which should you choose?
You want the simplest free option, trust your device screen lock and Google Account, and value automatic access across devices.
You want a distinct secret, no app network permission, no identity account, and a local vault whose portable backup remains under your control.