Your data is always encrypted at rest. Vaults (environment variables) are server-managed: their keys are protected by a server application key, so we technically can decrypt vault content (we don't access it in normal operation) — this enables passwordless login and CLI/CI use. Your password manager is zero-knowledge: it is protected by a master password that never leaves your device, so we can never decrypt your passwords.
We collect minimal data necessary to provide our service:
Our security model relies on the follow technologies:
You have the right to access, export, or delete your data at any time. Deleting your account permanently removes your encrypted data and identity keys.
If you wish to delete your account and all associated data, you can do so through your account settings or by visiting our Data Deletion Request page.
Last Updated: 7/25/2026
For questions, contact: tsiresymila@gmail.com