Last updated: August 24, 2026
This Privacy Policy describes how UnseenDesk ("the Application," "we," "us") handles information when you use our personal finance and encrypted vault software.
UnseenDesk is designed as a zero-knowledge application. Your master passphrase and record encryption keys are derived and used on your device. We do not store your passphrase, and we cannot decrypt your account data, vault records, files, notes, payment card details, or tool history stored in encrypted form on our servers.
Information you enter — including financial accounts, transactions, checks, contacts, identity documents, crypto wallet details, and uploaded files — is encrypted client-side before transmission. The server stores ciphertext, initialization vectors, wrapped record keys, and minimal metadata required to route records to the correct vault and enforce access control.
If you use sharing features, encrypted record keys are exchanged with designated recipients according to permissions you grant (view or edit). Folder-level sharing may propagate access to contained records. You are responsible for verifying recipient identities and permissions before sharing sensitive data.
Administrators of a deployment may access user management metadata (usernames, email addresses for invites, login timestamps, storage quotas, and aggregate record counts). Administrators cannot decrypt your vault contents without your passphrase and credentials.
Optional login protection may store salted PIN verifiers, a server-protected authenticator-app secret, WebAuthn public credentials, hashed recovery codes, hashed trusted-device tokens, verified-email status, and security-event metadata. PINs, recovery codes, trusted-device tokens, passkey private keys, biometric data, and vault encryption keys are not stored in plaintext by the Application.
Successful new-device unlocks and sensitive login-security changes create in-app alerts and recent-activity entries containing time, device description, IP address, and approximate location when available. If you verify an email address, these alerts may also be sent to that address.
The Application may cache static assets locally through a service worker to support offline installation and faster loading. API responses containing encrypted data are not cached by the service worker.
Optional tools run requests you initiate. The password generator and Code Scanner run on your device; Code Scanner decoding (QR codes, barcodes, and ID barcodes) stays local. IP and card-prefix lookup queries may be sent to third-party or operator-hosted services to retrieve reference data; those requests contain only the data you submit for lookup.
Feedback you submit through the app or public contact forms includes your message and contact details you provide. Feedback is transmitted to the operator for product improvement.
You may export encrypted backups through Settings. You are responsible for safeguarding backup files and passphrases. Deletion of records is permanent and non-recoverable from the Application once confirmed.
We may update this Privacy Policy as features evolve. Continued use after changes constitutes acceptance of the revised policy.