Skip to content
MyPinkParty
Help & FAQ

Security & App Lock

Protecting your app and encrypting your data

How do I lock the app with Face ID or a fingerprint?

Open App Lock from Settings and turn on Enable App Lock. When enabled, the app requires your device biometric (Face ID / Touch ID / Fingerprint) or device passcode each time you open it.

You can also set Lock after inactivity to control how soon the app re-locks: 1, 5, 15, 30 minutes, or 1 hour.

There's a separate Block Screenshots toggle that prevents screenshots and screen recording of the app.

If the toggle is greyed out, your device doesn't have biometrics set up yet — add Face ID / Fingerprint in your device settings first.

What is the encryption passphrase and how do I set or change it?

Your passphrase encrypts your business data. During setup you can either continue without a passphrase (server-managed encryption) or choose Set a passphrase for stronger, private protection.

To change it later, go to Settings and open Change Passphrase. Enter your current passphrase, then a new one (minimum length applies, and a strength meter guides you). You can add an optional recovery hint to jog your memory.

  • Choose something you'll remember — it is not stored anywhere in readable form
  • Your data itself isn't re-downloaded; only the key protecting it is re-secured, so your records stay intact
What is the recovery key and why must I save it?

When you set a passphrase, the app shows a one-time recovery key (a long code shown once). It's your backup way to regain access if you ever forget your passphrase.

Write it down or store it somewhere safe and private — a password manager or a secure note. You must tick the confirmation box before continuing.

  • The key is shown only once and can't be retrieved later
  • Avoid screenshots where possible; treat it like a spare key to your data
  • If you use recovery, you'll be given a fresh recovery key to save again
I forgot my passphrase — how do I get back in?

On the recovery screen, enter your saved recovery key, then set a new passphrase. If it succeeds, you'll receive a new recovery key to store safely.

If you no longer have your recovery key, the only remaining option is to wipe the encrypted data and start fresh — this permanently removes the encrypted data protected by the old passphrase and can't be undone. You'll be asked to type a confirmation word before it proceeds.

Because of this, keeping both your passphrase and recovery key safe is essential.

How does end-to-end encryption protect my data?

With a passphrase, your data is encrypted so that only your passphrase (or recovery key) can unlock it. Your passphrase is never uploaded — changing it re-secures the encryption key locally and on the server without exposing the passphrase itself.

The trade-off is responsibility: because no one else can decrypt your data, no one can recover it for you if both your passphrase and recovery key are lost.

If you prefer convenience over private key control, the server-managed option handles the key for you during setup.