Privacy Statement

Last updated: 11 March 2026

The short version

BlindKeep does not track you. No analytics, no cookies, no fingerprinting, no advertising, no data sales. Your encrypted data is stored in the EU and we cannot read it.

No tracking or analytics

  • No analytics scripts (no Google Analytics, Plausible, Mixpanel, or similar)
  • No tracking pixels or beacons
  • No browser fingerprinting
  • No advertising or retargeting
  • No A/B testing frameworks
  • No telemetry sent to third parties

No cookies

BlindKeep does not set any cookies. Authentication state is held in session storage, which is cleared when you close the tab. No persistent identifiers survive across sessions.

External resources

None. All resources — JavaScript, CSS, fonts, icons, and WASM — are served from our own domain. No CDNs, no third-party scripts, no external requests.

What we store

Because BlindKeep is zero-knowledge, we store only encrypted data and the minimum metadata required to operate the service:

DataPurposeCan we read it?
Email addressAccount identity, recovery, will notificationsYes
Encrypted blobs (S3)Your vault items, files, dropsNo
Wrapped keysKey managementNo
File size (bytes)Billing and meteringYes (padded to size buckets)
TimestampsRecord ordering, expiry logicYes
IP addressesRate limiting, audit logYes
Item/grant/drop countsDatabase row countsYes

We cannot decrypt your files, notes, passwords, or any vault content. See the cryptographic architecture for the full technical proof.

Data location

All data is stored and processed in European data centres (Scaleway, France). The server runs in the EU. Your data does not leave Europe.

Data retention

  • Vault items: Stored until you delete them or close your account
  • Drops: Auto-deleted 60 minutes after creation
  • Grants: Stored until revoked by the grantor or expired per policy
  • Audit logs: Retained for your review; deleted with your account
  • Account deletion: Removes all associated data (items, keys, grants, wills, audit logs)

Third-party data sharing

We do not sell, rent, or share your data with any third party. We do not have advertisers, data brokers, or analytics partners. Payment processing (Stripe) receives only the minimum billing data required to process a transaction — never your vault content.

Law enforcement

If compelled by valid legal process, we can only provide what we have: encrypted blobs, email addresses, timestamps, and IP addresses. We cannot provide decryption keys or plaintext data because we do not have them. This is a property of the architecture, not a policy choice.

Contact

Questions about privacy? Email privacy@blindkeep.com

Made & operated in the EU