Privacy policy for Veridenti — Identity & Password Guardian
Veridenti — Identity & Password Guardian by Veridenti
Privacy policy for Veridenti — Identity & Password Guardian
PRIVACY POLICY
Last updated July 29, 2026
The short version: Veridenti is built so we can't see your data. Your vault is encrypted on your device with a key only you hold. We don't sell data, we don't show ads, and we don't contact any server unless you turn on a feature that needs one. Our only revenue is subscriptions — you're the customer, not the product.
- What Veridenti stores, and where
Your vault (logins, passwords, TOTP secrets, identities, notes, bookmarks, the Legacy Vault, private custom field values such as rewards/membership numbers, and per-site preferences) is stored encrypted on your device (browser local storage), using a 256-bit AES-GCM key derived from your master password via PBKDF2-SHA256 (310,000 iterations). We never receive your master password or the key.
• Settings (theme, thresholds, per-site fill modes, "this is safe" allow-list) are stored locally and, if you enable sync, inside the same encrypted vault blob.
- Optional cloud sync
If you enable sync, your vault is uploaded as an encrypted blob to our backend (a Cloudflare Worker with KV storage). The server stores only the encrypted blob, a one-way authentication hash, and a salt. The server cannot decrypt your vault — it never has the key. This is zero-knowledge / end-to-end encryption. If you never enable sync, nothing leaves your device.
- Masked email
Masked email is generated through a provider you choose (Fastmail, addy.io, SimpleLogin, DuckDuckGo, Firefox Relay, or Forward Email) using your own account/API token, stored encrypted in your vault. The request goes directly from your browser to that provider — it never passes through Veridenti's servers. Veridenti does not operate an email service and does not receive your messages.
- Anonymous usage stats — off by default, opt-in only
Veridenti contacts no analytics server unless you explicitly turn on "Share anonymous usage stats." If you opt in, what we collect is anonymous and aggregate: an active-device count via a token that rotates weekly (not a persistent identifier); coarse country (never city, never a stored IP); and form-fill success rate and which form types get fixed. If you opt in, Veridenti may also report an aggregate count of how many items your vault holds — a single number, never the contents, names, or any value of those items.
What we never collect, even when opted in: your logins, passwords, or vault contents; any value you type; the specific sites you visit or full URLs; your identity; your IP or precise location. There are no third-party trackers, no advertising SDKs, and no analytics cookies anywhere in Veridenti.
4a. Breach monitoring & Leak Radar — matched on your device
Veridenti can warn you when a company you have an account with has been breached, and (with masked email) flag when one of your per-site aliases starts receiving unexpected mail ("Leak Radar"). Both work on your device: we download a public list of recently-breached domains — an ordinary request for public data that contains nothing about you — and compare it against your saved sites locally; the comparison, and your list of accounts, never leave your device. Leak Radar reads only your masked-email activity metadata (such as when an alias last received mail) from your own provider, directly — never the content of any message, and never through Veridenti's servers.
- Phishing / "Protect" features are 100% local
Veridenti's anti-phishing protection (look-alike-site warnings, password-reuse warnings, form-skimmer detection) runs entirely on your device, comparing pages only against your own saved logins. Your browsing is never sent anywhere for these checks.
- Permissions
Veridenti requests broad host access (http:///, https:///) for one reason: a password manager must be able to fill and protect logins on any site you use, and it can't know in advance which sites those are. It does not read or transmit page contents; it looks at form fields locally to fill them and to detect threats.
- Data sharing, retention, deletion
• We do not sell, rent, or share your data with anyone. There are no advertising or data-broker relationships.
• Sync data: you can delete your synced vault at any time from Settings; deletion removes the encrypted blob from our storage.
• Local data: uninstalling the extension removes your local vault. Keep your recovery key — without your master password or recovery key, an encrypted vault is unrecoverable, by design. - Your rights (GDPR / CCPA)
Because we hold only an unreadable encrypted blob and (if opted in) anonymized aggregates, we hold no personal data we can identify you by. You can still request deletion of any synced blob. We do not sell personal information as defined by CCPA.
- Children
Veridenti is not directed to children under 13 and does not knowingly collect their data.
- Changes & contact
We'll post changes here with a new "last updated" date. Questions: privacy@veridenti.com.