PasswordClue
Privacy Policy
Last updated: August 30, 2026
This policy explains how PasswordClue version 1.0 for iOS handles information. PasswordClue is a private password-reminder utility, not a password manager.
Summary
PasswordClue does not collect or transmit data from the app. It has no accounts, developer-controlled servers, analytics, advertising, tracking, third-party SDKs, or application networking. Your app data remains locally on your device.
Information stored on your device
Username hints and hint layers are encrypted locally using Apple CryptoKit and AES-GCM with a randomly generated 256-bit key. The key is stored in the iOS Keychain with kSecAttrAccessibleWhenUnlockedThisDeviceOnly, making it available only while the device is unlocked and only on the original device.
Account or service name, category, favorite and archived status, reminder interval, and creation, modification, last-viewed, and last-reviewed dates remain local but are not encrypted so the app can organize and navigate records. The developer does not receive any of these fields.
No backup, transfer, or recovery
PasswordClue's Application Support storage is intentionally excluded from device backups. Clues do not synchronize through iCloud, transfer to a replacement device, or restore from iCloud or computer backups. The developer does not possess your encryption key and cannot recover clues from a lost, damaged, erased, or replaced device. Deleted clues cannot be recovered.
Authentication and device security
If you enable Require Authentication, Apple’s device-owner authentication can use Face ID, Touch ID, or your device passcode. Authentication is performed entirely by iOS. PasswordClue never receives or stores face scans, fingerprints, biometric templates, or your device passcode.
Local processing and search
Search and password-like text detection run entirely on the device. Search normally uses account name, category, and username hint. You may enable “Include clue text in search,” which locally decrypts clue text for matching. Password-like text detection is advisory and cannot detect every actual password.
Notifications
Optional clue-review reminders are scheduled locally by iOS. PasswordClue uses no remote push service and collects no device token. Reminders are removed when a clue is archived or deleted and rescheduled when appropriate after review or restoration.
Deletion
You can permanently delete individual clues or use Delete All Clue Data in Settings. Delete All Clue Data removes all clue records, associated local reminders, and the clue-encryption key. Appearance and other app preferences remain. Deletion is irreversible.
Screen privacy
App-switcher privacy can cover the app when it becomes inactive. Screen Recording Protection covers visible content while iOS reports an active recording or screen-sharing session. iOS reports an ordinary screenshot only after it has been captured, so PasswordClue cannot reliably prevent screenshots.
Permissions
PasswordClue may request notification permission for local reminders and may show the Face ID purpose string “Face ID protects your private clues.” It does not request location, contacts, photos, camera, microphone, Bluetooth, calendars, health, motion, tracking, or local-network access.
Website and support
This website is hosted by GitHub Pages and contains no developer-added analytics, advertising, or tracking scripts. GitHub may process website requests under its own privacy practices. If you email support, the developer receives the information you voluntarily include in that message. Never send a password or clue text.
Changes and contact
This policy may change if the app’s features or legal requirements change. The revised date will be posted here.
Questions or deletion requests concerning support correspondence: sobanmuhammad26@icloud.com