ZeroTrace
We do not collect, sell, or rent:
Because we do not host your vault, we cannot access, recover, or reset your password for you. This is by design.
The app stores the following locally on your iPhone:
Encryption uses industry-standard algorithms (AES-256-GCM). Keys are derived from your password via HKDF-SHA256 and protected with the iOS Keychain.
Bookmarks and notes are sealed inside AES-256-GCM containers. The encryption key is derived from your vault password using HKDF-SHA256 and never leaves the iOS Keychain. We do not have a copy of your key and cannot recover it.
Page translation uses Apple's on-device Translation framework. Selected text never leaves your iPhone — translation runs entirely on the Apple Neural Engine.
The content blocker rule sets ship inside the app. ZeroTrace does not download remote filter lists. All blocking decisions are made locally by the Apple content blocker engine.
ZeroTrace requests only permissions needed for features you use:
ZeroTrace requests the minimum set of permissions needed. We do not access your system Photos library, microphone, or personal files unless you explicitly trigger an action.
We do not receive your payment card details.
Core browser features work without our servers. The only network requests made by ZeroTrace are:
We do not operate any servers that receive your browsing data, bookmarks, notes, or translation requests.
The app does not include third-party advertising SDKs, analytics SDKs, or social tracking SDKs.
ZeroTrace is not directed at children under 13. We do not knowingly collect personal information from children.
Your data remains on your device until you delete items, reset the vault, or uninstall the app. Uninstalling removes app-private data subject to iOS behavior.
This policy is provided in multiple languages. Because data is stored locally on your device, cross-border transfer by us does not apply to your vault contents.