Legal

Privacy Policy

How LegendPass handles your information — and why the design means we cannot see the things that matter most.

Last updated · July 30, 2026

1. Who we are

LegendPass is operated by GAMMA PASS LLC, a New Mexico limited liability company, Entity ID 0008102768 ("LegendPass", "we", "us"). LegendPass is a password manager and encrypted personal vault for iOS, Android, and the browser. This Privacy Policy explains what information we handle when you use our website, apps, and browser extension, and the choices you have.

2. Our zero-knowledge design

LegendPass is built so that we cannot see your most sensitive data. Your vault is encrypted on your device with a key derived from your master password using PBKDF2-HMAC-SHA256 at 310,000 iterations with a per-account salt, and sealed with AES-256 before anything is transmitted. Your master password is never sent to us.

This means we do not have access to, and cannot recover, your master password or the secrets inside your vault — your passwords, secure note contents, card numbers, bank account numbers, two-factor seeds, or passkey private keys. Those reach us as ciphertext for which we hold no key. If you lose your master password, we are unable to restore your vault on your behalf.

Encryption is applied to the secret field of each item, not to the whole record. The labels around a secret — the service name, the username, the site address, the date you added it — synchronise in readable form so your vault can be listed, searched, and sorted. Encrypting that metadata as well is on our roadmap. Our Zero-Knowledge Architecture document sets out the boundary field by field, including this limitation.

3. Biometric information

LegendPass offers face verification, palm verification, and gesture unlock as ways to open your vault. When you register one of these, the app captures the image on your device, converts it into a mathematical template, and stores that template in the app's private storage, protected by the operating system's file-level encryption and reachable by no other app. Processing happens entirely on the device. These are separate from Face ID, Touch ID, and Android fingerprint unlock, which are handled by the operating system in dedicated security hardware that we never interact with.

We do not receive, transmit, store, sell, lease, trade, or otherwise profit from your biometric identifiers or biometric information. We do not use them to identify you, we do not share them with any third party, and we do not combine them with data from any other source. No image of your face or palm is retained after the template is generated.

Your biometric template is deleted when you remove the biometric from Settings, when you delete your account, or when you uninstall the app — whichever happens first. Biometric unlock is optional: you can use LegendPass with only your master password.

4. Information we collect

Account information: an email address and authentication details when you create an account.

Vault data: the ciphertext of the secrets in your vault, together with the item metadata described above, stored so that it can synchronise between your devices. We cannot read the ciphertext. Photos, videos, and documents you add to the Media and Document vault stay in the app's private storage on your device — they are not transmitted to us at all.

Billing information: if you purchase a subscription, payment is processed by Apple, Google, or our payment processor. We receive limited details such as the plan, the transaction status, and whether the subscription is active. We never receive or store full card numbers.

Usage and device information: basic diagnostic data such as app version, device model, operating system version, and crash reports, used to keep the app working.

Support communications: the content of messages you send us when you ask for help.

5. Information we do not collect

We do not collect or have access to your master password, the decrypted contents of your vault, your two-factor seeds, your photos, videos, or documents in readable form, or your biometric templates. We do not build advertising profiles, and we do not sell your personal information to anyone, for any purpose.

6. How we use information

We use the limited information above to provide and secure the service, synchronise your encrypted vault between your devices, process subscriptions, answer support requests, send essential service notices, detect and prevent fraud or abuse, and comply with our legal obligations. We do not use your information for advertising or for automated decision-making that produces legal effects.

7. How we share information

We share information only with the service providers who help us operate — cloud infrastructure and storage, subscription management, crash reporting, and customer support tooling — under contracts that limit their use of the data to providing that service. We may also disclose information where legally required, or to protect the rights and safety of our users. Because your secrets are encrypted before they reach us, a provider hosting your vault receives ciphertext for those fields and cannot read them. We never sell your personal information.

8. Data retention

We keep your account record and encrypted vault for as long as your account is active. When you delete your account, we delete your account record and the encrypted vault data associated with it, except for billing records we are legally required to retain for tax and accounting purposes, and diagnostic data that has been anonymised. See our account deletion page for the full breakdown and how to request deletion by email.

9. Your rights

Depending on where you live, you may have the right to access, correct, export, or delete your personal information, to withdraw consent, and to opt out of certain processing. Residents of the European Economic Area and the United Kingdom have these rights under the GDPR; residents of California have them under the CCPA as amended by the CPRA; residents of Illinois have rights concerning biometric information under BIPA. To exercise any of them, email us at support@gammapass.com. We respond within the period the applicable law requires and will not discriminate against you for exercising your rights.

10. Security

Vault secrets are encrypted on your device with AES-256 using an encrypt-then-MAC construction, and transmitted over TLS. Keys are derived from your master password with PBKDF2-HMAC-SHA256 at 310,000 iterations. No method of transmission or storage is perfectly secure, but our architecture is designed so that a breach of our systems would expose ciphertext we ourselves cannot read, alongside the item metadata described in section 2. Our Zero-Knowledge Architecture document describes the full design and its current limitations.

11. International users

LegendPass is operated from the United States. If you use the service from outside the United States, the limited information we process may be transferred to and stored in the United States. Where required, we rely on the European Commission's Standard Contractual Clauses for such transfers.

12. Children

LegendPass is not directed to children under 13, and we do not knowingly collect personal information from them. If you believe a child has provided us with information, contact us at support@gammapass.com and we will delete it.

13. Subscriptions

LegendPass offers a free plan and a Premium subscription at $9.99 per month or $69.99 per year. Subscriptions purchased in the app are billed by Apple or Google under their terms; we receive the subscription status but not your payment details. You can cancel from your App Store or Google Play account settings at any time.

14. Changes to this policy

We may update this Privacy Policy from time to time. We will post the revised version here and update the "Last updated" date above. Material changes will be communicated in the app or by email before they take effect.

Questions about this document? Contact GAMMA PASS LLC at support@gammapass.com or by mail at 1209 Mountain Road Pl NE, Ste R, Albuquerque, NM 87110, United States.