Your passwords,
yours alone.
MyPassword keeps everything on your device, guarded by end-to-end encryption, and syncs securely across your devices through your private iCloud. The interface is minimal to the bone — nothing stands between you and your passwords. Zero knowledge, zero compromise.
Now in TestFlight · iOS 17 & macOS 14 · Android & Windows coming soon
We handle the complexity,
you get the peace of mind.
Five things, each done right.
Local-first
Your data lives in an encrypted SQLite database on your device — never on our servers by default. Works fully offline.
End-to-end encryption
Every record is sealed with AES-256-GCM. Your master password stays in your head — never uploaded, never stored.
Cloud sync
Record-level sync over your private iCloud database. Switch devices seamlessly; conflicts are shown clearly so you choose what to keep.
Minimal
No clutter, no ads, no tracking. Open and go — focused on one thing: keeping your secrets safe.
Fast
Built natively — instant launch, search and copy. Clears the clipboard automatically when needed, leaving no trace.
Recoverable
A one-time recovery key gets you back in if you forget your master password; unlock fast on-device with Face ID / Touch ID.
Four steps to get going.
From creating your vault to syncing across devices — under two minutes.
Pick a backup method, set a master password
On first launch you choose one of two: Local Only, where nothing ever leaves this device, or Encrypted iCloud Sync. Then create a master password of at least 10 characters. It only wraps a randomly generated vault key — the password itself is never uploaded or stored.
- Either choice can be changed later in Settings
- Password strength is shown as you type
- If iCloud already holds a vault, you unlock and adopt it instead of creating a new one
Write down the recovery key
Once the vault is created the app shows a one-time recovery key — this once and no more. Write it down or print it and keep it offline. The app does not store it; when your master password is unavailable, it is the only way back into the vault.
- Shown once — save it offline right then
- Recovers the whole vault if you forget the master password
- Replaceable in Settings; the old key dies the moment the change syncs
Add, search, copy in one tap
Each record is a key name, a secret value and an optional note. Search the list by name or note; values stay masked until you press and hold. Copying the name or the value takes one tap, and the clipboard clears itself when needed.
- Key name + secret value + note (optional)
- Masked by default — hold to reveal on iPhone, click to reveal on Mac
- Clipboard clears automatically after a copy, leaving no trace
- Face ID / Touch ID unlocks on-device
Pick it up on your other devices
Sign the other device into the same Apple ID, install the app, choose Encrypted iCloud Sync and enter the same master password to unlock and adopt the vault. Records sync from then on; if one was edited on two devices, the app lays both versions side by side and you decide which to keep.
- Same Apple ID + same master password
- Record-level sync — the cloud only holds ciphertext
- Conflicts side by side: Keep Mine / Keep Theirs / Keep Both
- CSV import and export for moving in and backing up
Still not sure about something? Email us →
Zero-knowledge, not a slogan.
We can't see your data — by design, we never can.
A random key, wrapped by your password
Each vault has a randomly generated 256-bit key; your master password only wraps it. Changing the password just re-wraps the key — no data is re-encrypted, which is both faster and safer.
The cloud only holds ciphertext
Every byte synced to iCloud is already encrypted. Your password and keys never leave your device, so we have nothing to decrypt.
A recovery key as your backstop
A one-time recovery key is generated at setup — keep it offline. If you ever forget your master password, it's your last key back in.
Privacy in every detail
Auto-locks after 5 idle minutes and instantly on sleep or screen lock; privacy shielding in the background, delete confirmations, conditional clipboard clearing. Security lives in the details.
On all your devices.
We don't collect your data.
Not as a promise — as an architecture. Here is exactly what happens to it.
Last updated: September 10, 2026
The short version: MyPassword has no servers, no accounts and no analytics. Your entries are encrypted on your device and, if you turn sync on, stored in your own private iCloud. We cannot read them, and we never receive them.
What we collect
Nothing. MyPassword has no account system, no telemetry, no analytics SDK, no advertising and no crash reporting. The app makes no network requests to any server operated by us — we do not run one.
Where your entries live
Every entry is encrypted with AES-256-GCM before it is written to an SQLite database in your app's private storage. The key that encrypts them is a randomly generated 256-bit vault key; your master password only wraps that key and is never written to disk, never uploaded, and never recoverable by us.
iCloud sync, if you turn it on
Sync is off unless you choose it. When enabled, encrypted records are written to your own private CloudKit database inside your personal iCloud account. This is Apple infrastructure tied to your Apple Account — not ours. Every byte stored there is already ciphertext, and we have no access to your iCloud container. Apple's handling of that data is governed by Apple's own privacy policy.
Sync also uses Apple Push Notification service to learn that something changed on another device. Those pushes are silent and carry no entry content.
What stays on your device
- The encrypted database of your entries
- Your wrapped vault key, held in the system Keychain
- A few preferences: language choice, whether sync is on, and a random per-device identifier used only to tell your own devices apart during sync
None of this is transmitted to us.
Files you export
CSV export writes your entries in plain text to a location you pick. Once that file leaves the app it is no longer protected by MyPassword. Store it somewhere safe and delete it when you no longer need it.
Children
MyPassword is suitable for all ages and collects no personal information from anyone, including children under 13.
Deleting your data
Deleting the app removes the local database and its Keychain entry. If you used iCloud sync, you can remove the app's data from iCloud in Settings on your device (Apple Account → iCloud → Manage Storage). Because we hold nothing, there is no account to close and nothing for us to delete on your behalf.
Changes to this policy
If this policy changes, the updated version will be posted on this page with a new date. Material changes will also be noted in the app's release notes.
Contact
Questions about this policy or about how the app handles your data: [email protected]
Guaguatu Technology Co., Ltd.
Something wrong? We're here.
Questions, bug reports or feature ideas — just email us. We usually reply within 1–2 business days.
How-to questions, bug reports, feature requests
If you can't reach the address above, write here instead
When reporting an issue, please include
Your device and OS version (e.g. iPhone 15 / iOS 18), the app version, steps to reproduce and a screenshot. It helps us track things down much faster.
Never email us your master password, recovery key or any entry contents — we will never ask for them, and we cannot decrypt your data.
Give your passwords a safer home.
Join the TestFlight beta for full early access. One link works on iPhone, iPad and Mac.
Requires Apple TestFlight on your device · Full release coming to the App Store