Privacy Policy for PassMancer

calendar_today Effective 28 September 2026
android Package: com.passmancer.android
security Zero-Data-Collection Architecture
security
Permissions 0 Requested No Android manifest permissions declared
wifi_off
Network 100% Offline No INTERNET permission or network transmission
key
Encryption AES-256-GCM Hardware-backed Keystore / StrongBox / TEE
visibility_off
Analytics Zero Tracking No analytics SDKs, ads, or crash reporters

Applicability: This Privacy Policy applies to PassMancer for Android (com.passmancer.android) as published by Pralhad Nasane, unless a later Privacy Policy replaces it.

PassMancer is an offline password generator created by Pralhad Nasane.

PassMancer is designed around local processing and data minimization. This Privacy Policy explains what information PassMancer processes, where it is stored, and how the application handles that information.

01

1. What PassMancer Does

PassMancer provides on-device password tools:

  • Random Password Generation: Generates passwords directly on your device using a cryptographically secure random number generator.
  • Entropy & Strength Analysis: Evaluates password complexity and theoretical entropy using local mathematical calculations.
  • Crack-Time Estimation: Estimates password cracking times using hypothetical attack speeds and local calculations.
  • Optional Password History: Provides a temporary rolling history of generated passwords, which is disabled by default.

All PassMancer features operate locally on your device. PassMancer does not require external servers to provide its core functionality.

02

2. Information Handling and Local Processing

PassMancer does not collect or transmit your app data to PassMancer servers.

  • No Accounts: You do not need to create an account, sign in, or provide personal information to use the app.
  • No App Data Transmission: PassMancer does not send generated passwords, or app settings over the internet.
  • No Analytics: PassMancer does not include analytics SDKs or track screen views, button usage, or feature usage.
  • No Crash-Reporting SDKs: PassMancer does not include third-party crash-reporting services or intentionally transmit crash reports from the app.
  • No Advertising: PassMancer contains no advertisements, advertising SDKs, or ad trackers.
  • No Android Permissions: The current release declares no Android permissions in its application manifest.

Passwords and settings used by PassMancer are processed locally on your device. Generated passwords are only stored locally when you choose to use the optional Password History feature.

03

3. Internet and Network Access

PassMancer does not request the Android INTERNET permission and does not use network connections for its app functionality.

The PassMancer app itself does not transmit your app data to external servers.

04

4. How Passwords Are Generated

  • Passwords are generated using java.security.SecureRandom, a cryptographically secure random number generator available on Android.
  • Password generation and strength calculations are performed locally on the device.
  • PassMancer attempts to wipe intermediate sensitive memory buffers after they are no longer needed.
05

5. Password History (Optional)

Password History is disabled by default. If you choose to enable it:

  • Local Storage: History is stored only in PassMancer's private local application storage.
  • Encryption: Stored history is encrypted using AES-256-GCM.
  • Android Keystore: Encryption keys are generated and managed using the Android Keystore, with hardware-backed protection used where supported by the device, such as StrongBox or a hardware-backed Trusted Execution Environment (TEE).
  • Automatic Deletion: History entries are automatically deleted from PassMancer's local storage after your selected retention period: 1, 6, 12, 24, 48, or 72 hours. The default is 24 hours.
  • Capacity Limits: History retains up to your selected maximum number of entries: 5, 10, 20, or 50. The default is 10. Older entries are removed when the limit is reached.
  • Manual Deletion: You can delete individual entries or clear your entire history at any time.
06

6. App Preferences and Local Settings

PassMancer stores app preferences locally on your device using Android's local application storage.

These preferences include:

  • Selected theme
  • Vibration feedback setting
  • Screenshot protection setting
  • Default password length
  • Onboarding status
  • Password History settings, including enabled state, retention period, and maximum entries

These settings are stored in PassMancer's private application storage and are not shared with other applications.

07

7. Clipboard Behavior

  • Explicit Action Only: PassMancer copies a password to the Android system clipboard only when you explicitly tap the Copy button.
  • Sensitive Content Flag: On Android 13 (API 33) and newer, copied passwords are marked as sensitive content using EXTRA_IS_SENSITIVE, allowing supported Android interfaces to conceal clipboard previews. Compatible handling is also used on earlier supported Android versions.
  • No Clipboard Reading: PassMancer does not read or monitor your clipboard contents.
08

8. Screenshot Protection

PassMancer includes an optional Screenshot Protection setting, disabled by default.

When enabled, PassMancer uses Android's FLAG_SECURE window setting to prevent normal screenshots and screen capture of protected app content and to hide protected content from the Recent Apps view.

The effectiveness of screen-capture protection may depend on the Android implementation and device.

09

9. Backups and Device Migration

PassMancer is configured to exclude its private application data from supported Android backup and device-to-device transfer mechanisms.

PassMancer does not intentionally upload its local password history, preferences, or other app data to cloud storage.

10

10. External Links

PassMancer may provide optional links to:

  • The developer's GitHub profile
  • Open-source license information
  • The PassMancer Google Play listing

When you tap an external link, the relevant page or application is opened outside PassMancer, such as in your web browser or the Google Play Store.

External services are operated by their respective providers and are governed by their own privacy policies and terms.

11

11. Contacting the Developer

PassMancer does not require you to provide personal information to use the application.

If you voluntarily contact the developer by email, the developer may receive your email address and any information you choose to include in your message.

This information is used only for purposes such as:

  • Responding to support requests
  • Responding to privacy or data-related inquiries
  • Investigating issues you report
  • Maintaining appropriate records where reasonably necessary

Support correspondence is not used for advertising or behavioral profiling.

We retain support correspondence only for as long as reasonably necessary to handle the request, maintain appropriate records, resolve disputes, or comply with applicable legal obligations.

Depending on your location and applicable law, you may have rights relating to personal information you provide through support communications. You may contact the developer using the email address provided in Section 15 to make a privacy request.

12

12. How to Delete Your Data

You have control over the information stored locally by PassMancer:

  • Delete History: Open the History screen to delete individual entries or clear the entire history.
  • Clear Cache: Go to Settings → Data Management → Clear Cache to remove temporary files.
  • Clear All Data: Go to Settings → Data Management → Clear All Data to delete saved history, reset preferences, and clear local application data.
  • Uninstall App: Uninstalling PassMancer removes its app-specific local data from the device.

Because PassMancer does not maintain an account or cloud database for your app data, there is no PassMancer account or server-side password history that needs to be deleted.

13

13. Children's Privacy

PassMancer does not require users, including children, to provide personal information to use the application.

The app does not include user accounts, advertising, analytics, or tracking.

If a child or parent contacts the developer by email, any information voluntarily included in that communication is handled as described in Section 11.

14

14. Changes to This Privacy Policy

If PassMancer's data practices or features change, this Privacy Policy may be updated to reflect those changes.

The revised policy will include a new Effective Date. The latest version will be made available within PassMancer and through the public Privacy Policy URL associated with the app.

15

15. Contact Information

If you have questions, feedback, support requests, or privacy concerns regarding PassMancer, please contact:

Developer Pralhad Nasane
Support Email

For users in India, privacy and grievance-related concerns may be submitted through the contact email above and will be reviewed and addressed within a reasonable period.

For users in other jurisdictions, privacy requests may also be submitted through the contact email above, subject to applicable law.