Last updated September 29, 2026
Privacy Policy
This policy covers the PassMaker iPhone app and passmakerapp.com, built by Swapnanil Dhol.
Summary
PassMaker does not require an account and does not sell your data. Passes you create are stored on your device. Some features send data to our servers or to service providers only to perform the feature you asked for.
Passes and drafts
Pass drafts, templates, and generated passes are stored locally on your iPhone. To produce a valid Apple Wallet pass, the pass contents (fields, barcode values, images) are sent to our signing server, signed with our Pass Type ID certificate, and returned to your device. We do not keep a copy of signed passes.
Bulk event passes work the same way: the attendee data you import from CSV stays on your device except for the per-pass contents that are sent for signing.
AI features
When you generate a pass from a prompt, analyze a reference image, or ask for CSV column suggestions, the prompt, image, or column headers and sample values are sent through our server to OpenAI to produce the result. OpenAI processes this data under its API data-usage policy, which does not use API data to train models by default. We do not store prompts or images on our servers.
Camera and photos
The camera is used only to scan barcodes into your pass, and scanning happens on your device. Photos you pick are used only in the pass you are editing.
If you search for background images, your search term is sent to Unsplash. If you search for a brand logo, the name or domain you enter is sent to a logo lookup service to fetch the image.
Purchases
Subscriptions and purchases are processed by Apple. We use RevenueCat to verify purchase status using an anonymous app user ID. We never receive your payment details.
Analytics
The app uses Mixpanel to record product events such as which features are used and whether pass creation succeeds. Events are tied to an anonymous ID and do not include pass contents, prompts, or images. Our server keeps an anonymous per-install counter to limit AI generation usage.
The website uses Mixpanel and TelemetryDeck for aggregate page analytics.
Feedback
If you send feedback from the app, we receive your message, the category you pick, basic device and app version details, and an anonymous installation ID, plus your email address only if you choose to include it. We use this to respond and to fix problems.
Website tools
The pass.json builder and validator run in your browser. When you validate a complete .pkpass file, it is sent to our validation API to verify its signature and is not stored.
Children
PassMaker is not directed at children under 13, and we do not knowingly collect personal information from them.
Your choices
You can delete passes and drafts at any time by removing them in the app or deleting the app. To ask about or delete any feedback you sent, email us at the address below.
Changes
If this policy changes, we will update this page and the date at the top.
Contact
Questions about privacy? Email [email protected].