PASSยทREMOTE

EFFECTIVE AUGUST 12, 2026

Privacy Policy

Pass is a remote companion for software-development sessions running on devices you control. Lightsoft operates the Pass account and relay service.

Information we process

How we use information

We use this information only to authenticate you, link devices that belong to your account, route remote commands, keep connections reliable, prevent abuse, and support the service.

Service providers

Google and Apple provide account authentication. Cloudflare hosts the web console, relay, database, and connection infrastructure; feedback reports are first stored in the Cloudflare D1 database. Expo may deliver mobile application updates. When optional feedback forwarding is configured, Notion also stores successfully forwarded submissions for support and product improvement. These providers process limited information under their own privacy terms.

Retention and security

Account and device records remain while your account is active. Short-lived operational records may be retained for reliability, fraud prevention, and security. Feedback is retained in Cloudflare D1, and optionally in Notion, while it is needed to investigate or resolve the report and is removed through an operator-run retention review or on request. Transport is encrypted in transit, credentials are scoped and revocable, Apple refresh tokens are encrypted at rest, and the control database does not intentionally retain relayed command bodies or terminal content outside a feedback report you deliberately submit.

Your choices and deletion

You can sign out, revoke a paired device, or permanently delete your Pass account. Account deletion removes the account, linked provider identities, registered desktops, paired-device credentials, audit records tied to the account, and stored relay-room metadata. If an Apple identity is linked, Pass first attempts to revoke its stored Sign in with Apple authorization. If automatic revocation fails, no local data is deleted until you explicitly approve the manual fallback; after approval, data deletion continues and Pass instructs you to revoke Pass yourself under Apple Settings > [your name] > Sign-In & Security > Sign in with Apple. A feedback report submitted separately may not contain an account identifier. Keep the report reference returned after submission private; support may use it together with other verification details if you request removal. See the account deletion instructions.

Contact

For privacy questions, open a request without including personal data, secrets, or a feedback report reference in the Pass issue tracker so Lightsoft can arrange an appropriate private follow-up channel.