Your security is our top priority. Here’s how PrivPass works and how we keep your passwords safe:
• Storage
All your data is securely stored within your iCloud account. Meaning you can access your PrivPass password store from all your Apple devices. Nothing is ever stored on any of our servers. We don't store any personal information. In fact, we store nothing. This is your password store, you shouldn't have to give up your personal information in exchange for security.
• Master Password Protection
Your master password is never stored as plain text. Instead, it is securely saved in Apple’s Keychain, ensuring only you, and your device, can access it.
• Strong Encryption
Every password you save is encrypted using AES-GCM, a highly secure encryption method trusted worldwide. To enhance security, we use a unique, randomly generated salt each time encryption occurs. This ensures that even identical passwords are encrypted differently. Encryption is performed on device, before being stored in your iCloud account.
• Safe Decryption
When you need to access your passwords, your master password generates a secure key to decrypt them. This process uses a nonce (random number) and authentication tag, verifying that your data remains safe and untampered. Decryption is also performed on device.
• Zero Plain Text Storage
We never store your passwords in plain text. They remain encrypted at all times, meaning even if someone gained access to your data, they wouldn’t be able to read it.
• Reach out to us
If you ever have any questions, concerns or feedback, you can reach us at
[email protected].