LedgerKeeper — Privacy
App Store privacy label: Data Not Linked to You — unless you sign in
LedgerKeeper holds your whole financial picture and is built so that we cannot see any of it. With no account it is fully functional in airplane mode forever and transmits nothing. If you turn on backup, your ledger is encrypted on your phone with a passphrase we never receive — we store an opaque blob and could not read it if we wanted to.
The specifics
- No account required; without one, nothing ever leaves your phone
- Backup is encrypted on your device before it is uploaded — AES-GCM under a key derived from your passphrase, which is never transmitted
- We hold ciphertext and a byte count. We cannot read your ledger, and there is no reset link, because a reset link would be a second key we were holding
- Signing in adds your email address and a random per-install support id — never your name, never your numbers
- Two-factor with an authenticator app is supported, and protects your account; your ledger is protected separately by your passphrase
- No analytics, no crash reporting, no advertising, no third-party SDKs, no in-app web views
Children
LedgerKeeper is not directed to children under 13, and because it collects no personal information it does not knowingly collect theirs either.
Changes
If a future version of LedgerKeeper ever collects anything, this page changes before that version ships, and the App Store privacy label changes with it. A privacy page that lags the app is a false statement, not a stale one.
Contact
Questions about LedgerKeeper and your privacy: privacy@lmkdev.com. For help using the app, see support.
LMKdev (LMK Management LLC)1218 East Boulevard, Charlotte, NC 28203, United States
The LMKdev site privacy policy covers lmkdev.com itself — the website you are reading. This page covers the app.