Privacy Policy
This policy explains what the Password Manager app collects, why, and what you can do about it. It describes the app as it actually behaves, including the limits of its protection.
What the app stores
| Data | Why | Where |
|---|---|---|
| Email address | To create and sign in to your account | Google Firebase Authentication |
| Google account identifier and profile email, if you choose “Continue with Google” | To sign you in without a separate password | Google Firebase Authentication |
| Saved entries: site or app name, username, email address, category, icon and timestamps | To display your vault | Google Firebase Realtime Database, stored as you entered them |
| Saved entries: password, note and website address | The secrets themselves | Encrypted on your device before upload, then stored in Firebase |
| Master PIN | To unlock the app and to derive the encryption key | On your device. A transformed copy is stored in your account so the app can check the PIN you type |
| Advertising identifier and ad interaction data | To show ads | Google AdMob |
| Basic usage and device data | Crash and usage measurement | Google Firebase Analytics |
| Push notification token | To deliver notifications | Google Firebase Cloud Messaging |
How your secrets are protected — and what that does not cover
Passwords, notes and website addresses are encrypted on your device using AES-256 before they are sent anywhere. The key is derived from your master PIN, which is not uploaded in plain form.
Please read this part carefully.
- The site or app name, username, email address and category of each entry are not encrypted. They are stored in readable form so the app can list and search them. Anyone with access to the database can read them.
- A master PIN is short. A transformed copy of it is stored in your account so the app can verify what you type. Someone with database access could work out a short PIN and, with it, decrypt the passwords in that account. A longer PIN is meaningfully harder to work out than a short one.
- The app is therefore not designed to protect you against someone who obtains access to the database itself. It protects your vault on your device and in transit.
What the app does not collect
- Location. The app requests no location permission.
- Contacts, photos, files or the contents of other apps.
- Payment details. The app has no purchases and no subscription.
Who your data is shared with
Your data is processed by Google as the provider of Firebase (authentication, database, analytics, messaging) and AdMob (advertising). It is not sold, and it is not shared with anyone else. See Google’s Privacy Policy.
Advertising and consent
The app shows ads through Google AdMob. If you are in the European Economic Area, the United Kingdom or Switzerland, the app asks for your advertising consent through Google’s consent platform before any ad is requested, and your choice is respected. You can change it at any time from the consent form when it is shown.
Deleting your data
- Delete all records — Account Settings → Delete all records. Removes every saved entry. This cannot be undone.
- Delete account — Account Settings → Delete account. Removes your login and everything stored against it. This cannot be undone.
If you cannot access the app, email the address below from the account’s email address and the account will be deleted.
Security measures
- All network traffic uses HTTPS.
- Screenshots and screen recording are blocked while your vault is open.
- The app is excluded from Android cloud backup and device-to-device transfer, so your vault is not copied off the device that way.
- The vault locks behind your master PIN, and optionally your fingerprint.
Children
The app is not directed at children under 13 and is not intended for their use.
Changes to this policy
If this policy changes, the updated version will be published at this address with a new “last updated” date. Material changes will also be noted in the app’s release notes.
Contact
Questions or requests about your data: bddroidapp@gmail.com