Privacy · Last updated June 14, 2026

Your data stays
on your device.

Keyholdr is a menu bar (macOS) / system tray (Windows) utility for storing and accessing API keys and other secrets on your own device. This policy explains what data Keyholdr handles and how, and applies to both the macOS and Windows apps.

What Keyholdr stores

The credentials (API keys, secrets, and associated metadata such as names, platforms, and tags) that you add to Keyholdr are stored entirely on your local device. Secret values are stored using your operating system's hardware-backed credential store — macOS Keychain Services or Windows Credential Manager — the same secure storage used by the OS itself for saved passwords. Metadata is stored in a local JSON file on your device.

What Keyholdr does not do

Biometric unlock

If you enable Touch ID / Apple Watch (macOS) or Windows Hello (Windows) to unlock Keyholdr, authentication is handled entirely by the operating system on your device. Keyholdr never receives or stores biometric data.

Data deletion

All data stored by Keyholdr remains under your control. Removing a credential from within the app deletes it from the OS credential store (Keychain or Credential Manager) and the local metadata file. Uninstalling the app does not automatically remove entries from the OS credential store; you can remove them manually via Keychain Access or Windows Credential Manager if desired.

Changes to this policy

If this policy changes, the updated version will be published at this same URL with a revised "Last updated" date.

Contact

Questions about this policy can be sent to ashwini.sharma0807@gmail.com.