Effective date: 15 July 2026
Passora (bundle ID me.ponchotang.WalletPass) is designed to work without
collecting personal data. There are no accounts, no analytics, no ads, and no
trackers, and we never sell or share data with third parties for marketing.
This page describes exactly what the app does with your data.
When you generate a pass, the app sends that pass’s content (its text fields, colors, images, and barcode value) over an encrypted connection (HTTPS) to our signing server, because Apple Wallet passes must be cryptographically signed.
The server signs the pass in memory and returns it to your device. Pass content is not stored, not logged, and not shared. Once the signed pass is returned, no copy remains on the server.
To prevent abuse of the signing service, the app uses Apple’s App Attest to prove requests come from a genuine copy of Passora. As part of this, the server keeps a record of each verified app installation: an anonymous key identifier, its public key, and a usage counter.
This record contains no personal information: no name, email, phone number, location, precise device identifiers, or anything about your passes. It cannot be used to identify you or to track you across apps, and it is used solely to verify signing requests (fraud prevention). Deleting the app abandons the key; a new installation creates a new one.
If the app’s data practices change, this page will be updated and the effective date revised before the change ships.
Questions about this policy: email support@ponchotang.me.