Privacy policy
What Dprime Vault collects, why it is needed and what remains unreadable to us.
Effective 2 September 2026
Information we process
We process your account email, subscription and plan status, encrypted vault envelopes, session records, and limited metadata-only security events. Vault entries are encrypted on your device before synchronization.
Information we cannot read
Dprime does not receive your master password, unencrypted vault key, recovery decryption material, or plaintext passwords, API keys, SSH credentials and private notes.
Billing
Purchases are handled through the Dprime billing portal and its payment providers. The vault service receives subscription status and numeric customer and service references; it does not store full payment-card details.
Cookies
The web vault uses a strictly necessary secure session cookie. The current vault interface does not use advertising cookies.
Retention and deletion
We retain account, encrypted vault and operational records while needed to provide and secure the service, meet legal obligations and resolve disputes. You may request account deletion, subject to records we must retain by law.
Your choices
You may export an encrypted backup from the web vault. To request access, correction or deletion of account information, contact privacy@dprimevault.com.