PasswordClue

Privacy Policy

Last updated: August 30, 2026

This policy explains how PasswordClue version 1.0 for iOS handles information. PasswordClue is a private password-reminder utility, not a password manager.

Summary

PasswordClue does not collect or transmit data from the app. It has no accounts, developer-controlled servers, analytics, advertising, tracking, third-party SDKs, or application networking. Your app data remains locally on your device.

Information stored on your device

Username hints and hint layers are encrypted locally using Apple CryptoKit and AES-GCM with a randomly generated 256-bit key. The key is stored in the iOS Keychain with kSecAttrAccessibleWhenUnlockedThisDeviceOnly, making it available only while the device is unlocked and only on the original device.

Account or service name, category, favorite and archived status, reminder interval, and creation, modification, last-viewed, and last-reviewed dates remain local but are not encrypted so the app can organize and navigate records. The developer does not receive any of these fields.

No backup, transfer, or recovery

PasswordClue's Application Support storage is intentionally excluded from device backups. Clues do not synchronize through iCloud, transfer to a replacement device, or restore from iCloud or computer backups. The developer does not possess your encryption key and cannot recover clues from a lost, damaged, erased, or replaced device. Deleted clues cannot be recovered.

Authentication and device security

If you enable Require Authentication, Apple’s device-owner authentication can use Face ID, Touch ID, or your device passcode. Authentication is performed entirely by iOS. PasswordClue never receives or stores face scans, fingerprints, biometric templates, or your device passcode.

Local processing and search

Search and password-like text detection run entirely on the device. Search normally uses account name, category, and username hint. You may enable “Include clue text in search,” which locally decrypts clue text for matching. Password-like text detection is advisory and cannot detect every actual password.

Notifications

Optional clue-review reminders are scheduled locally by iOS. PasswordClue uses no remote push service and collects no device token. Reminders are removed when a clue is archived or deleted and rescheduled when appropriate after review or restoration.

Deletion

You can permanently delete individual clues or use Delete All Clue Data in Settings. Delete All Clue Data removes all clue records, associated local reminders, and the clue-encryption key. Appearance and other app preferences remain. Deletion is irreversible.

Screen privacy

App-switcher privacy can cover the app when it becomes inactive. Screen Recording Protection covers visible content while iOS reports an active recording or screen-sharing session. iOS reports an ordinary screenshot only after it has been captured, so PasswordClue cannot reliably prevent screenshots.

Permissions

PasswordClue may request notification permission for local reminders and may show the Face ID purpose string “Face ID protects your private clues.” It does not request location, contacts, photos, camera, microphone, Bluetooth, calendars, health, motion, tracking, or local-network access.

Website and support

This website is hosted by GitHub Pages and contains no developer-added analytics, advertising, or tracking scripts. GitHub may process website requests under its own privacy practices. If you email support, the developer receives the information you voluntarily include in that message. Never send a password or clue text.

Changes and contact

This policy may change if the app’s features or legal requirements change. The revised date will be posted here.

Questions or deletion requests concerning support correspondence: sobanmuhammad26@icloud.com