Privacy policy
Effective 31 August 2026
The short version. The app has no account, no server that receives what you create, no analytics and no crash reporting, and it never asks to track you across other apps. This website is separate: it uses Google Analytics, which sets cookies and is described in section 3.5.
1. Who is responsible for your data
Naviria Labs, S.L., Calle Marie Curie 7, Edificio Beta, Planta 7, Ático 4, Parque Empresarial Rivas Futura, 28521 Rivas-Vaciamadrid, Madrid, Spain, is the data controller for the processing described here.
For anything to do with privacy or your rights, write to support@navirialabs.com.
We have not appointed a Data Protection Officer. We are not required to: we carry out no large-scale monitoring and process no special categories of data.
2. What we never receive
We have no infrastructure capable of receiving the passwords, passphrases, PINs or phrases you generate in PasswordMe. They are not sent to us in any form — not in analytics, not in logs, not in crash reports, not in advertising requests. There is no anonymised copy, because there is no copy.
If we were ever compelled by a court to produce what someone generated in the app, we would have nothing to produce.
3. What is actually processed
3.1 Data that stays on your device
The following never leaves your device unless you deliberately send it somewhere yourself. It is listed for transparency, not because we receive it.
| What | Where it lives | How long |
|---|---|---|
| Generated passwords, passphrases and PINs | In memory, and on the clipboard if you copy one | Clipboard copies expire automatically |
| Saved presets (the rules, never the password they produced) | App storage on the device | Until you delete them or remove the app |
| Optional generation history — off by default | App storage, encrypted with AES-GCM; the key is held in the iOS Keychain and unlocked with Face ID or Touch ID | Until you clear it or remove the app |
| Exported batches | A temporary file with complete file protection, which you then send wherever you choose | Deleted by the app after export |
| App preferences | iOS UserDefaults | Until you remove the app |
Removing the app removes all of it. We cannot restore any of it, because we never had it.
3.2 Advertising
PasswordMe is free and supported by advertising through Google AdMob. This is the only component of the app that communicates with a third party.
Before any ad is requested in the EU, the UK and other regions that require it, the app shows Google's consent form. Your choice is recorded on the device and determines what Google may process — typically device and connection information, approximate location derived from an IP address, and interaction with the ad itself. Google acts as an independent controller for that data under its own privacy policy.
We do not use App Tracking Transparency and the app never requests access to your device's advertising identifier (IDFA). It therefore cannot follow you across other companies' apps and websites, and it contains no attribution framework. This is verifiable: the app declares no tracking and no tracking domains in its App Store privacy manifest.
Changing your mind. Where the consent form applies, PasswordMe shows a privacy options entry in Settings that reopens it, so you can withdraw or change consent at any time. Buying PasswordMe Pro removes advertising from the app entirely.
We receive no report from Google that identifies you. What we see is aggregate revenue and impression counts.
3.3 Purchases
Purchases are processed by Apple. We receive confirmation from Apple that a purchase is valid for a device; we never receive your name, address, payment card or Apple Account ID. Refunds and purchase history are handled by Apple.
3.4 If you contact us
If you email us for support we receive your email address and whatever you write. We use it to answer you and for nothing else, and we keep support correspondence for up to 24 months before deleting it.
3.5 This website
passwordme.app is a set of static files served from Amazon Web Services (Amazon S3 and Amazon CloudFront). We do not enable CloudFront access logging, so we keep no record of who requests this site — no IP addresses and no request logs are retained by us. AWS processes each request in order to deliver the files, as our processor under the AWS GDPR Data Processing Addendum.
The site uses Google Analytics 4 (measurement ID G-MX74VXN4Z7) to understand how many people visit and which pages they read. It sets cookies in your browser (named _ga and _ga_<id>) and sends Google your IP address, the pages you view, approximate location derived from that address, and basic device and browser information. Google processes this on our behalf under its own terms. We use it in aggregate and never attempt to identify individual visitors.
You can opt out at any time by using your browser's cookie controls, by installing Google's opt-out add-on, or by sending a Do Not Track / Global Privacy Control signal where your browser supports it. None of this applies to the app: PasswordMe itself contains no analytics of any kind.
The site loads its typefaces from Google Fonts. Your browser therefore requests those font files directly from a Google server, and in doing so Google receives your IP address and basic request information, handled under Google's privacy policy. No cookie is set by this, and we receive nothing from it.
4. Legal bases
Under Article 6 of the GDPR:
| Purpose | Legal basis |
|---|---|
| Providing the app's generation features | Art. 6(1)(b) — performance of a contract with you |
| Personalised or measured advertising | Art. 6(1)(a) — your consent, withdrawable at any time |
| Non-personalised advertising | Art. 6(1)(f) — legitimate interest in funding a free app, weighed against a minimal privacy impact |
| Website analytics | Art. 6(1)(a) — your consent. Under Spanish LSSI-CE Art. 22.2, non-essential cookies require consent before they are set |
| Answering your support email | Art. 6(1)(b) and 6(1)(f) — responding to your own request |
| Keeping the app and site secure | Art. 6(1)(f) — legitimate interest in operating a service safely |
Where we rely on legitimate interest you have the right to object — see section 6.
5. Who your data is shared with
We do not sell personal data, we do not share it with data brokers, and we build no advertising profiles ourselves. The recipients are Google (advertising as described in 3.2, and web analytics and web fonts as described in 3.5), Apple (distribution and purchases, as an independent controller), Amazon Web Services (website hosting and request logs, on our instructions), and authorities where we are legally compelled — noting section 2, which limits what could ever exist to disclose.
6. International transfers
Google and Amazon Web Services are both based in the United States and may process data there or elsewhere. CloudFront is a global content delivery network, so the site is served from an edge location near you. Those transfers rely on the European Commission's adequacy decision for the EU–US Data Privacy Framework where the recipient is certified under it, and on Standard Contractual Clauses otherwise. You can avoid them entirely by declining advertising consent or by purchasing PasswordMe Pro.
7. Your rights
Under the GDPR and the Spanish LOPDGDD you have the right to access your personal data, rectify it, erase it, restrict its processing, object to processing based on legitimate interest, receive it in a portable format, and withdraw consent at any time without affecting processing already carried out.
Write to support@navirialabs.com to exercise any of these. We will respond within one month, as the GDPR requires.
An honest limitation. Because PasswordMe never asks who you are, we usually hold no personal data that could be linked to you, and there may be nothing for us to access, correct, export or delete. Where that is so we will tell you plainly rather than ask you to identify yourself — demanding identity documents to search a database that does not exist would be worse for your privacy, not better.
If you believe we have handled your data improperly you may complain to the Spanish supervisory authority, the Agencia Española de Protección de Datos, C/ Jorge Juan 6, 28001 Madrid — www.aepd.es. You may also complain to the authority in your own country of residence.
8. How long we keep things
We keep only what sections 3.2 to 3.5 describe, for the periods stated there. Everything in section 3.1 lives on your device under your control and is gone when you delete it or remove the app.
9. Children
PasswordMe is not directed at children. Under the LOPDGDD, consent in Spain is valid from age 14; other EU countries set this between 13 and 16. We do not knowingly process data from children below the applicable age. If you believe a child has provided us with personal data, contact us and we will delete it.
10. Security
Passwords are generated on the device using the operating system's cryptographically secure random number generator. Optional history is encrypted with AES-GCM using a 256-bit key stored in the iOS Keychain and gated behind Face ID or Touch ID. Exported files are written with complete file protection and deleted after export. Copied secrets expire from the clipboard, and the app obscures its own screen in the multitasking switcher so iOS does not retain a readable snapshot.
No system is perfectly secure, but the strongest protection here is architectural: data we never receive cannot be breached at our end.
11. Changes to this policy
If we change this policy materially we will update the effective date and, where the change affects how your data is used, tell you in the app before it takes effect. Previous versions are available on request.
12. Contact
Naviria Labs, S.L.
Calle Marie Curie 7, Edificio Beta, Planta 7, Ático 4
Parque Empresarial Rivas Futura, 28521 Rivas-Vaciamadrid, Madrid, España
support@navirialabs.com