Privacy Policy
Last updated: January 2026
Overview
Diser Password Manager is built around a zero-knowledge architecture. We collect the minimum information needed to operate the service and we never see your stored passwords in plain text. This policy explains exactly what we store, why, and how you stay in control.
Information We Collect
Account data
- Username, optional email address, and a securely hashed master password.
- If you sign in with Discord or Google: your provider ID, email, and avatar URL.
Vault data
- Encrypted password entries, notes, categories, and favorites.
- All vault entries are encrypted before they are written to the database.
Security and session data
- A browser identifier used for login security and remembered devices.
- IP address, user agent, and timestamps for login attempts and audit logs.
- Two factor authentication secrets when you enable 2FA.
Support data
- Messages and attachments you send through the Contact page.
How Your Data Is Protected
- Vault entries are encrypted with AES 256 before storage.
- Master passwords are hashed with modern, salted algorithms and are never reversible.
- Two factor authentication adds a second verification layer on every sensitive action.
- Sessions automatically expire after inactivity and unrecognized devices require re verification.
Data Sharing
We do not sell, rent, or trade your data. We do not share your information with advertisers. The only third parties that receive any data are the authentication providers you choose to use (Discord, Google), and only the data required to complete sign in.
Your Rights
- Access: you can view all data tied to your account from inside the app.
- Export: your vault can be exported at any time.
- Deletion: you can delete individual entries or your entire account permanently.
- Unlinking: connected Discord or Google accounts can be unlinked from Settings.
Cookies and Local Storage
We use a session cookie to keep you signed in and a small set of local preferences (theme, sidebar state, remembered device flag). We do not use third party tracking or analytics cookies.
Children
Diser Password Manager is not directed at children under 13. If you believe a child has created an account, contact us and we will remove it.
Changes to This Policy
We may update this policy as the product evolves. Material changes will be announced inside the app and the updated date at the top of this page will be revised.
Contact
For any privacy related question, contact us at contact.pwmanager@proton.me or join our Discord server at https://discord.gg/YCCvGcavEQ.