KeyNest User Agreement

Version: 1.0 | Last updated: October 1, 2026 | Effective: October 1, 2026

This Agreement is between you and Liu Xinhua (刘新华), the provider of KeyNest (Chinese name: 钥匣; application bundle name: com.sanvar.vault), referred to as “we”, “us” or “our”, regarding your use of the app. Read it before use, particularly the provisions on master passwords, encrypted backups, service limitations and liability. You may request an explanation through the email below.

After expressly accepting this Agreement in the app, you may use the relevant services under these terms. Merely opening or reading this page does not mean you accept the Agreement. Personal information processing is addressed in the separate KeyNest Privacy Policy. This Agreement does not constitute blanket authorization for all personal information processing.

Please note

1. Services and scope

KeyNest provides local storage, viewing, editing, searching, categorization and copying of account password records; entry, recognition and generation of two-step verification codes and their association with account records; master password and supported quick unlock methods; local security settings; and encrypted backup import, export and duplicate record handling.

Available features depend on the installed version, device capabilities, operating system version and actual interface. Scanning, image and file selection, biometrics and AppGallery ratings rely on the corresponding system services. Some optional features may be unavailable on certain devices or system versions.

KeyNest does not provide a developer-operated online account, vault cloud synchronization, a proxy for signing in to third-party accounts or master password recovery. Vault contents are stored on your device. The developer does not keep your passwords or verification secrets for you and cannot decrypt or remotely restore your vault.

2. License and usage rules

Subject to compliance with this Agreement and applicable law, we permit you to install and use KeyNest on compatible devices you lawfully use. Rights in the app's software, interface and related works belong to us or the lawful rights holders. Using KeyNest does not transfer rights in your saved records to us.

Minors should read and use the app with a guardian's guidance, and obtain the guardian's appropriate consent where required by law.

3. Master password and quick unlock

Keep your master password safe and do not disclose it to others. We cannot recover your master password or reset it to decrypt your existing vault. If you forget it and have neither usable quick unlock nor an encrypted backup, you may be unable to access existing records.

Fingerprint, face and pattern unlock are optional shortcuts. Once enabled, device authentication methods or patterns known to others may affect vault security. Patterns generally have fewer possible combinations than strong passwords; choose carefully based on the sensitivity of your data.

Changes to device security or system authentication settings, system restrictions or invalid quick-unlock credentials may make quick unlock unavailable. The master password may be needed to verify or configure access again. Quick unlock does not remove the need to retain your master password.

Auto-lock, additional verification and privacy windows reduce risks but cannot prevent every instance of access after a device is compromised, credentials are exposed, or you choose to copy or export content. Use device locking appropriately and verify that apps receiving copied content are trustworthy.

4. Backups, deletion and ending use

4.1 Encrypted backups

You choose when to export a backup, which is encrypted with the backup password you set and saved to your selected location. Keep the file and password safe, update backups after important record changes, and confirm that your app version can import them. We cannot recover the backup password or restore damaged or lost files without another usable copy.

A backup restores password records, verification records and their associations. It does not fully duplicate device settings or pattern, fingerprint or face quick-unlock credentials. Check previews, duplicate records and conflict choices before importing, and configure quick unlock again as needed after changing devices.

4.2 Deletion and clearing

Deleting a password record keeps its associated verification record by default. Deleting a verification record does not delete its associated password record. Removing an association keeps both records. Manage them separately as needed.

“Clear local data” deletes the current local vault; it is not a recovery feature or a way to reset access to existing passwords. Only a separately saved, valid backup that can be decrypted may restore the records it contains. Exported backups, content copied to other apps and copies in third-party storage are not automatically deleted when local data is cleared.

4.3 Ending use

You may stop using the app at any time. Export and keep a valid backup before uninstalling if you want to retain records. To remove information, clear the local vault and handle other copies separately. Uninstalling, system deletion of app data, or a lost, damaged or inaccessible device may make records without a backup unrecoverable.

5. Third-party services and verification codes

Scanning, image and file selection, biometric authentication, ratings and external storage services you choose are subject to their respective providers' rules. We reasonably handle results returned by those services but cannot guarantee availability on every device, system version or under every condition.

KeyNest generates verification codes from the secret, algorithm, digit count, period and device time you provide or configure. Incorrect parameters, time differences or changes to a third-party account may cause codes to be rejected. Check settings and contact the relevant account provider when necessary.

Deleting a verification record from KeyNest does not disable two-step verification on the third-party website. Before replacing or removing a verification method, retain recovery codes or another sign-in method according to that service's instructions to avoid losing account access.

Website addresses in password records are displayed as record information. KeyNest does not guarantee the trustworthiness of third-party websites or provide security or account recovery commitments on their behalf.

6. Personal information and confidentiality

Personal information processing is explained in the separate KeyNest Privacy Policy. The Policy and this Agreement are presented separately. Processing must meet applicable legal and authorization requirements.

Copying writes content to the local clipboard. The app attempts to clear unchanged copied content after approximately 30 seconds, but system conditions may affect clearing. After exporting, pasting or sharing content yourself, consider how other apps, recipients and storage services handle it.

Do not provide your master password, account passwords, verification secrets, unlock pattern or complete backups when reporting issues. You may provide a description without credentials, app and system versions, and necessary screenshots with sensitive content obscured.

7. Updates and changes to this Agreement

We may update the app to fix issues, improve security or support system changes. We will notify you through the app or another appropriate method of changes that may significantly affect existing features, backup compatibility or your rights, and provide reasonable arrangements for retaining or exporting data.

Updates to this Agreement will show an update date. Terms with a significant impact on your interests will be prominently highlighted, and appropriate confirmation will be obtained as required by law. Updates do not automatically change terms applicable to existing matters or restrict your statutory rights through undisclosed terms.

If you do not accept a significant change, you may stop using the relevant new feature or version and export existing records where reasonably feasible without compromising security. If maintenance ends, we will give reasonable notice and necessary guidance on managing data.

8. Liability and risk handling

We will take reasonable development, maintenance and security measures in accordance with the service agreement, and bear liability required by law. The app does not promise completely fault-free operation in every device state or protection against all risks from device compromise, exposed credentials or third-party services.

If records become inaccessible, verification codes stop working or backups encounter problems, preserve existing files and the device state where possible, avoid repeatedly clearing data or uninstalling, and contact support. We will help investigate within our capabilities but cannot restore local contents we do not hold and cannot decrypt.

Liability is determined by applicable law, actual fault, causation and loss. This Agreement does not exclude or limit liability for our intentional misconduct, gross negligence or other matters that cannot legally be excluded, or deprive you of statutory consumer rights. Advice on backups and credential management does not mean all data loss is your responsibility.

If a provision is found invalid, the remaining lawful and valid provisions continue to apply. Invalid provisions will be handled under applicable law.

9. Governing law and dispute resolution

This Agreement is governed by the laws of the People's Republic of China. Any other mandatory protections applicable to you remain effective.

For disputes, you may first contact us at the email below to seek a resolution, or lodge a complaint with the relevant authority or bring proceedings before a court with jurisdiction in accordance with law. This provision does not limit other remedies available to you under law.

10. Contact us

App provider: Liu Xinhua (刘新华)
Email: flyxinhua@163.com

For feature support, explanations of terms or reports of security issues, contact us at this email. We will respond as soon as reasonably possible. Do not send sensitive credentials or complete backups.