Passora

Passora Privacy Policy

Effective date: 15 July 2026

Passora (bundle ID me.ponchotang.WalletPass) is designed to work without collecting personal data. There are no accounts, no analytics, no ads, and no trackers, and we never sell or share data with third parties for marketing. This page describes exactly what the app does with your data.

What stays on your device

What is sent to our server, and why

When you generate a pass, the app sends that pass’s content (its text fields, colors, images, and barcode value) over an encrypted connection (HTTPS) to our signing server, because Apple Wallet passes must be cryptographically signed.

The server signs the pass in memory and returns it to your device. Pass content is not stored, not logged, and not shared. Once the signed pass is returned, no copy remains on the server.

Device verification (App Attest)

To prevent abuse of the signing service, the app uses Apple’s App Attest to prove requests come from a genuine copy of Passora. As part of this, the server keeps a record of each verified app installation: an anonymous key identifier, its public key, and a usage counter.

This record contains no personal information: no name, email, phone number, location, precise device identifiers, or anything about your passes. It cannot be used to identify you or to track you across apps, and it is used solely to verify signing requests (fraud prevention). Deleting the app abandons the key; a new installation creates a new one.

Data retention and deletion

Third parties

Changes

If the app’s data practices change, this page will be updated and the effective date revised before the change ships.

Contact

Questions about this policy: email support@ponchotang.me.