SatPak — Privacy Policy
Legal

SatPak Privacy Policy

Effective August 30, 2026  ·  Applies to SatPak for iOS  ·  Source repository

In one sentence: SatPak does not require a personal account, but its connected wallet features process technical, wallet, and transaction data — this policy explains exactly what stays on your device, what leaves it, and the choices available to you.

1. Scope

This policy covers the SatPak Bitcoin wallet for iOS ("SatPak", "the app"), the website at satpak.io, SatPak API services, and support communications. SatPak is a self-custody Bitcoin wallet: you control the wallet, while specific features use connected infrastructure to discover wallet activity, synchronize app data, construct or broadcast transactions, display prices, and provide optional recovery. This policy describes what those systems process and where your choices apply.

2. Data SatPak processes

SatPak does not ask you to create a profile with a name, email address, phone number, or username. The app does create an anonymous Supabase session and uses connected services to deliver its wallet features. Depending on what you do in the app, the following data can be processed:

  • Anonymous session and app usage. A Supabase user identifier, device identifier, session identifier, opening time, active-session duration, timestamps, and ordinary network metadata can be processed to operate and measure the service. These records are not attached to a personal SatPak profile because the app has no personal sign-up flow.
  • Wallet and synchronization data. Wallet names and types, public addresses or extended public keys, balances, transaction state, unconfirmed amounts, import drafts, and responses returned by connected wallet services can be synchronized with SatPak infrastructure.
  • Wallet discovery and signing material. When you request supported import or discovery flows, the recovery phrase, optional passphrase, or private key you enter can be sent to a SatPak API. When SatPak constructs a standard payment through its payment service, the request can include the selected inputs, addresses, amounts, fee settings, and the WIF material required for those inputs.
  • IP and approximate network location. Internet services naturally receive your IP address. SatPak can also request IP-derived network and approximate location information from an IP-information provider and associate the response with an anonymous device record when required by the service flow.
  • Support communications. If you email support or open a public GitHub issue, we receive the information you choose to include. Never include a recovery phrase, passphrase, private key, PIN, or other wallet secret.

3. Data stored on your device

SatPak keeps wallet records, cached blockchain responses, prices, and preferences inside the app's local storage. Recovery phrases and imported private keys are stored separately in iOS Keychain with device-only accessibility while the device is unlocked. Removing a wallet triggers removal of its local record and associated Keychain credential. Optional iCloud Keychain backups and records already sent to connected services have their own removal paths and are not the same as the app's local database.

4. Device permissions

  • Face ID. Biometric evaluation is performed by iOS and the Secure Enclave. SatPak receives only the authentication result; it does not receive, store, or transmit your biometric template.
  • Camera. Used when you choose to scan a Bitcoin address, payment request, wallet credential, or supported animated QR. Camera frames are handled for scanning and are not added to your SatPak wallet records.

5. Network requests to third‑party infrastructure

A Bitcoin wallet must communicate with network infrastructure to find activity, estimate fees, construct or broadcast transactions, and display market values. SatPak uses both its own API services and third-party providers. A service receives the contents of the request sent to it together with ordinary network information. The current categories include:

  • SatPak API services for recovery-phrase and private-key discovery, wallet history, unconfirmed activity, payment construction, and transaction broadcasting.
  • Supabase for anonymous authentication, wallet-related synchronization, import-state synchronization, and app-usage records.
  • Electrum and Bitcoin infrastructure for addresses, balances, history, UTXOs, fees, and transaction data. If you configure a custom Electrum server, your device connects using the server and SSL choice you provide.
  • Market-price and IP-information providers for fiat estimates and network context.

A contacted service can observe your IP address, request timing, the addresses or transactions requested, and any wallet or transaction material intentionally included in that call. Third-party providers operate under their own terms and privacy policies. SatPak's Offline Mode stops connected balance and transaction refreshes, but those features remain unavailable until connectivity is restored.

6. Blockchain transactions are public

When a Bitcoin transaction is broadcast, it becomes part of a public peer-to-peer network and can be recorded permanently on the Bitcoin blockchain. Addresses, amounts, transaction structure, and confirmation history are publicly observable. This is a property of Bitcoin itself: SatPak cannot erase, hide, or reverse a confirmed transaction.

7. Optional iCloud backup

If — and only if — you enable backup for a wallet, SatPak stores its backup record in Apple's iCloud-synchronized Keychain and creates a Passkey credential for that wallet. Restoring the wallet requires the matching native Passkey authorization. Apple processes the synchronized Keychain and Passkey data under its own terms, and the security of your Apple Account and trusted devices becomes part of the recovery boundary. You can leave the feature disabled and rely on a manually secured recovery phrase instead.

8. Children and age

SatPak is not directed at children. Self-custody places full responsibility for wallet credentials and funds on the person using the app. You must be legally able to manage Bitcoin and accept the Terms of Use in your jurisdiction.

9. Your rights and choices

You can control SatPak's iOS permissions, stop connected refreshes with Offline Mode, choose a custom Electrum server, remove an optional iCloud wallet backup, and delete a wallet from the app. You can also contact us about access or deletion rights that apply to records held by SatPak services. Public Bitcoin records cannot be altered or erased by SatPak. See Privacy Choices for a direct list of controls.

10. Changes to this policy

When this policy changes, the revised text will be published on this page and the effective date above will be updated. The website source is version-controlled in the public repository, making policy revisions reviewable alongside the code they describe.

11. Contact

For privacy questions or applicable data requests, email support@satpak.io. Technical questions can also be raised in the public repository at github.com/devdasx/satpak when the details are safe to share publicly. Never send a recovery phrase, passphrase, private key, PIN, or sensitive transaction material through email, GitHub, or any support channel.

SatPak — focused on Bitcoin.
Overview › Security › Privacy › Privacy Choices › Terms › Open Source › Support › FAQ ›