Privacy Policy
The short version. Keyclave collects nothing. There is no account, no server and no analytics — and no networking code in the app at all.
This Privacy Policy explains how Flowlab Apps (“we”, “us”) handles information in Keyclave (the “app”). It is written to be read, not to be survived.
1. What we collect
Nothing. There is no sign-up, no login, no email address collected, no advertising identifier, no usage analytics and no crash reporting. No SDK in the app reports your behaviour to anyone.
Flowlab Apps operates no server that holds your Keyclave data, because no such data ever reaches us. That is not a policy decision we could quietly reverse in an update — there is no backend to send it to.
2. What the app stores, and where
Everything Keyclave saves is stored on the device you are using it on.
| What | Where | Why |
|---|---|---|
| Your documents | Encrypted, in the app's private storage on your device | They are the point of the app |
| The search index and timeline | Encrypted, alongside the documents | So search and history work offline |
| Your master key material | The device Keychain, marked “when unlocked, this device only” | So biometric unlock works without storing your password |
| Lockout state | The device Keychain | So repeated failed attempts still count after a relaunch |
| Preferences | App preferences on your device | To remember how you like the app configured |
3. Permissions
Keyclave asks for the following, and nothing else. Every permission marked optional can be declined, and the app keeps working without it.
- Face ID / Touch ID (optional) — To unlock the vault without typing your password. The biometric check happens in Apple's secure hardware; the app never receives your biometric data.
- Camera (optional) — Only to scan a paper document into the vault when you choose to. Scans are processed on-device and stored encrypted.
- Photo Library (optional) — Only to import a photo you select into the vault.
- Notifications (optional) — For expiration reminders you set. Scheduled locally on your device — no push server is involved.
4. Network activity
There is none. The app contains no URLSession, no network connections and no web views that load remote content. It cannot upload your documents, and there is no service to upload them to.
5. Third parties
None. The project declares zero external dependencies — no CocoaPods, no Carthage, no remote Swift packages, no analytics and no crash reporting. Only Apple's own frameworks are used.
We do not sell, rent, share or disclose your personal information, because we do not hold any of it.
6. What we declare to the app stores
Apple requires a privacy declaration alongside the app listing. These are the answers we give for Keyclave, reproduced here so you can check them against the rest of this policy.
| Store declaration | Our answer |
|---|---|
| Apple App Store — App Privacy | Data Not Collected. Nothing is collected from this app, by us or by anyone else, so no data type is linked to you and none is used to track you. |
| Account deletion | Not applicable — the app has no account. See Data & Account Deletion. |
7. Children
Keyclave is not directed at children under 13, and it collects no personal information from anyone of any age. Because nothing is collected, nothing is collected from children.
8. Additional notes
Your master password is never stored anywhere — not on the device and not with us. That means we cannot recover your vault if you lose both your password and your recovery key. That is the trade-off that makes the encryption meaningful.
9. Your rights and your choices
Privacy laws including the GDPR and the CCPA give you rights to access, correct, export and delete personal data a company holds about you. Flowlab Apps holds no personal data about Keyclave users, so there is nothing for us to produce, correct or erase on request.
You remain in full control of the data on your own device:
- Delete individual items from inside the app.
- On iPhone, remove the app to delete its local data, subject to your device's own backup and restore settings.
- On a Mac, moving the app to the Trash leaves its data behind. Erase the vault inside the app first: on the lock screen choose Use recovery key…, then Lost your recovery key too?, type ERASE and confirm. That overwrites and deletes the encrypted vault and removes Keyclave's entries from your Keychain, which deleting a folder would not. Then quit Keyclave and delete its container,
~/, to clear the preferences left behind.Library/ Containers/ com. flowlab. keyclave - Revoke any permission at any time from your device's system settings.
We do not sell personal information and never have. We do not share personal information for cross-context behavioural advertising.
10. Security
Because your data stays on your device, its security rests on your device's own protections — your passcode, your biometric lock and your operating system's storage encryption. Keep your device updated and locked.
11. Changes to this policy
If this policy changes, the revised version will be published at this address with a new date at the top. If a future version of Keyclave ever begins collecting data, this policy will be updated before that version is released, and the app will ask for your consent in-app.
12. Contact
Questions about this policy, or about privacy in any Flowlab Apps app:
- Email: dev@flowlabapps.com
- Support: flowlabapps.
com/ apps/ keyclave/ support/
We aim to answer within a few business days.