Vault / Privacy
Your content.
Your choices.
Vault keeps its core content on your device. Opewell does not operate a server that receives that content as part of the app’s normal storage workflow.
What Vault stores
Vault stores notes, files, photos, names, and folder relationships in local encrypted containers. It uses device authentication to open the app and separate passwords to open containers. It does not store container passwords in Keychain. Optional device-local volume names are stored in Keychain and are not part of an encrypted-volume export. These labels can remain separately from the volume file.
Import, camera, and clipboard
Photo and file selection use system pickers. Their providers may download or temporarily represent the source content. Imported photos are optimized into copies without source EXIF/GPS metadata; originals in Photos remain unchanged. Direct camera capture does not save the captured image to Photos.
Explicitly copying saved text places it on the device-local clipboard with a short expiry. Other software on the device may be able to access copied content before expiry. Vault does not automatically copy your content.
Exports and backups
A whole-volume export remains encrypted. Exporting an individual saved file or photo hands its unencrypted bytes to Files and the destination you select. Providers may retain or synchronize a copy. Vault does not control copies held outside its storage.
Keep tested backups and passwords under your control. There is no recovery-key or forgotten-password recovery service. Opewell cannot unlock your container for you.
Optional security-advisory checks
Checking public advisories contacts GitHub’s public security feeds for the libsodium and swift-sodium repositories. The app compares dependency versions locally. It does not send container contents, filenames, passwords, encryption keys, or record counts with those requests. GitHub receives ordinary connection metadata such as your IP address and a static app request header.
Automatic advisory checks when the app opens are off by default. You can enable or disable them in the app. Results are held in memory during the app process rather than as a persistent inventory of your containers.
Deletion and limits
Deleted content can remain in earlier encrypted snapshots or exported backups. Removing a local volume does not remove external copies. A password change does not guarantee that historical exports become inaccessible.
Vault is an unaudited development prototype. Use test data only. It cannot guarantee secure flash erasure, protection on a compromised operating system, or the prevention of screenshots and all in-memory copies. Read the security overview for its boundaries.
Purchases and diagnostics
Where purchase features are available, Apple’s StoreKit handles product information, payment, and transaction verification. The app uses verified entitlement information to enable Pro features. Opewell does not receive payment-card details, and app content is not sent to Apple’s commerce services for purchase verification.
The app code does not integrate advertising or third-party analytics SDKs. Apple may process or share diagnostics and aggregate app information according to your device, developer-feedback, and App Store settings. See Apple’s privacy information.
Children and sensitive information
The app is a general-purpose tool, not a service designed to collect children’s information. Be careful about entering or sharing sensitive information about yourself or other people. If a child has sent personal information to Opewell through support, contact us to request its removal.
Support and privacy requests
Opewell is the independent publisher responsible for this notice. Contact [email protected] with privacy questions or requests about information you have sent us.
If you contact us, we receive your email address, message, and any attachments you choose to include. We use this information to respond, troubleshoot, and maintain relevant support records. Our support mailbox uses Gmail, so Google and your email provider also process correspondence. Please do not send passwords, private documents, or vault files.
Retention and your choices
We retain support correspondence while needed to address the request, maintain relevant records, or meet applicable legal obligations. Retention depends on the purpose and any unresolved issue; this notice does not promise an automatic deletion date. You may ask us to access, correct, or delete information you have provided. We may need to verify the request and retain information where required by law.
We cannot access or delete content held only on your device or in backups you control. Manage that content through the app, iOS settings, and the storage providers you use. Depending on where you live, additional privacy rights or the right to complain to your local data-protection authority may apply.
Service providers and disclosure
We use service providers to operate the website and handle email. They may process information in countries other than yours under their own applicable terms and safeguards. We may disclose information we hold when required by law or necessary to protect people, investigate abuse, or secure our services. The website and apps do not include advertising networks or tools for selling your app content.
Changes to this notice
We will update this page and its date when relevant practices change. Material changes will be explained through the website or app as appropriate. This notice describes the current features; a link to it does not mean an app is already available in the App Store.
Website privacy covers traffic to this website separately.