totem

Privacy Policy

Last updated: 6 August 2026

Totem does not collect your data. There is no Totem server, no account to create, and no analytics or tracking of any kind. This policy is written in plain language because a security app should be understandable.

Who we are

Totem is developed by Connor Zubrecki, based in Saskatchewan, Canada. You can reach us at support@carrythetotem.com.

What we collect

Nothing.

Totem contains no analytics, no advertising SDKs, no crash-reporting services, and no third-party trackers. We do not collect personal information, usage data, device identifiers, or diagnostics. We do not build profiles, and we have no ability to identify you.

Totem does not require an account, an email address, or a sign-up of any kind.

Your accounts and secrets

When you add an account to Totem, the secret key used to generate your verification codes is stored encrypted on your device, protected by the iOS Keychain and, if you enable it, by Face ID or Touch ID.

Verification codes are generated entirely on your device, offline. Generating a code requires no internet connection and sends nothing anywhere. We never receive, transmit, or have access to your secrets, your account names, or your codes.

iCloud sync (optional)

If you turn on iCloud sync, your accounts are synchronised through your own private iCloud account using Apple's CloudKit private database. This means:

Sync is off unless you turn it on, and Totem works fully without it. Your use of iCloud is also governed by Apple's Privacy Policy.

Encrypted backup files (optional)

If you export a backup, Totem creates an encrypted file protected by a passphrase or recovery kit you choose. That file is saved wherever you choose to save it. We never receive it, and we cannot decrypt it. If you lose the passphrase, the file cannot be recovered - by us or by anyone.

Purchases

Totem offers optional paid features. Purchases are processed entirely by Apple through the App Store. We never see or handle your payment information, and we receive no personal information from Apple about your purchase. Totem checks your subscription status on your device through Apple's system, and that check does not identify you to us.

Camera and photos

Totem uses your camera only to scan QR codes when you choose to add an account. Camera frames are processed on your device in real time and are never stored or transmitted. Totem does not access your camera at any other time. You can decline camera access and still add accounts manually or from a saved image.

If you import a QR code from a photo, Totem reads only the image you select, decodes it on your device, and does not store or transmit it.

Clipboard

When you tap a code to copy it, that code is placed on your device's clipboard and set to expire automatically after a short period. It is never transmitted.

Children

Totem is not directed at children and does not knowingly collect information from anyone, including children. Because we collect no data at all, there is no children's data for us to hold.

Data sharing and sale

We do not share, sell, rent, or disclose your data - because we do not have it. There are no third parties involved in Totem's operation, no data processors, and no advertising partners.

Retention and deletion

Because we collect nothing, we retain nothing. Your data lives on your device and, if you enable sync, in your own iCloud. You can delete any account inside Totem at any time, turn off iCloud sync at any time, and remove all local data by deleting the app.

Your rights

Privacy laws such as PIPEDA (Canada), the GDPR (EU and UK), and the CCPA (California) give you rights to access, correct, delete, and port your personal data.

We support these rights, and in Totem's case they are satisfied by design: since we hold no personal data about you, there is nothing for us to disclose, correct, or delete on your behalf. You have complete and direct control over your data on your own device at all times.

Security

Totem protects your secrets using AES-256-GCM encryption via Apple's CryptoKit, with keys stored in the iOS Keychain and optional biometric protection. Code generation happens entirely on-device.

No system is perfectly secure, but Totem is designed so that there is no central store of user secrets to breach - no server to attack, and no collection of user data in existence.

Changes to this policy

If we update this policy, we will revise the date above. If we ever make a material change - particularly one that would alter the "we collect nothing" commitment - we will make it clear in the app before the change takes effect.

Contact

Questions about this policy or about privacy in Totem: support@carrythetotem.com

Connor Zubrecki · Saskatchewan, Canada