Every other keyboard asks you to trust it. Relay removes the ability to betray you: your vault is end-to-end encrypted so we can never read it, and the keyboard ships with no internet permission. The operating system itself blocks it from sending a single byte.
On Android, Relay ships with no internet permission. The OS blocks it from sending anything. On iOS, typing your details never even needs “Full Access”. And because your vault is end-to-end encrypted, the only copy that ever leaves your device is an unreadable blob.
In 2017 one keyboard app leaked 31 million people's data to an open server. That can't happen to a keyboard that can't reach the internet.
You're the customer, not the product. Relay's only business is the app you buy. There's no ad business or data business underneath it. We never see your details.
No vague promises. Here is every category of data Relay touches, where it lives, and who can actually read it.
The pattern: everything private stays with you. The only thing we ever hold in readable form is the email you optionally give us.
“End-to-end encrypted” is a big phrase for a simple idea. Here it is in three steps.
When you set up Relay, your device generates an encryption key. It's created on your phone, stored on your phone, and never sent to us. We couldn't look it up if we tried.
Every detail and document you save is sealed with that key before it touches storage. Without the key, your vault is meaningless noise, on your phone, and anywhere it travels.
When you pair a second device, the key passes directly between your devices. Our sync service only ever relays the locked box: never the key, never the contents.
When your phone syncs with your PC, this is the entire journey. The readable vault never exists anywhere except on your own devices.
What our server sees, in full: f9#kQ2…x7. And that's the point.
Every platform enforces Relay's isolation with its own mechanism: the strictest one available on each.
The keyboard ships without the INTERNET permission. Android itself refuses to give it a network socket. Transmitting anything is impossible at the OS level, and you can verify it in the app's system settings.
Typing your details works with “Allow Full Access” switched off. iOS's own sandbox keeps the keyboard offline. And Relay has no content servers, so there's nowhere for data to go even if you enable it for clipboard features.
The desktop vault is encrypted locally and works fully offline. It only touches the network if you switch on sync, and then only to pass the same unreadable ciphertext shown above.
Relay for MacBook lands with the exact same rule: a locally encrypted vault that works fully offline, network touched only for optional end-to-end-encrypted sync: ciphertext and nothing else.
No, and on Android it couldn't send it anywhere even if it did, because the OS denies it network access entirely. Relay doesn't log keystrokes, has no analytics inside the keyboard, and never works in password fields at all.
Your vault is locked by your device's biometrics and encryption. A thief holds noise. If you've paired a second device, your vault is already there, readable only by that device. We can't restore your vault because we never had it (that's the trade that makes it private), so keep a paired device or your own backup.
No. There is no advertising business, no data brokerage, no “trusted partners” clause. The only personal data we ever hold is the name and email you give us if you sign in, used to run your account, nothing else.
Because most of them are checkable, not promissory. The missing internet permission is visible in Android's own settings. iOS shows you Full Access is off. Airplane-mode the phone and the keyboard works identically. The architecture is the guarantee, not our word.
The app, nothing else. Relay is free to start, and power features are a straightforward subscription. You're the customer, so the product is built for you, not for advertisers.
Last updated 12 July 2026
Relay is built so that your private information stays under your control. Your vault (the details and documents you save) is encrypted on your device, and any copy that syncs between your devices is end-to-end encrypted so we can never read it. You can use Relay with no account at all; signing in is optional. This policy explains exactly what we do and don't collect.
The short version: Your vault is encrypted on your device and unlocked only by your face, fingerprint, or passcode. We can't read it. Even when it syncs, we only ever hold an unreadable encrypted blob. If you choose to sign in, we collect your name and email to run your account. That's it. We never sell or share your data.
The details and documents you add to Relay (names, addresses, ID numbers, IBANs, notes, scans, and files) are stored in an encrypted vault on your device. If you turn on sync (optional), an encrypted copy is relayed between your devices, but it stays end-to-end encrypted with a key only your own devices hold, so we and our hosting providers only ever see unreadable ciphertext. We never see your actual details, and could not retrieve them even if asked.
If you sign in (optional): your name and email address (from Apple, Google, or Microsoft sign-in, or the email you type) so we can recognise your account, send you product updates, and provide support. You can use Relay fully without an account; signing in is optional. We do not sell, rent, or share your information, we do not build advertising profiles, and we do not track you across other apps or websites.
Your vault contents (the details, documents and scans you save) are never collected in a form we can read. They stay encrypted end-to-end as described above.
If you pair Relay on your phone with the Relay desktop app, your vault is encrypted on the device and only the encrypted blob is sent to our sync service so your other paired device can download it. The encryption key is exchanged directly between your devices when you pair them and is never sent to us. We store only ciphertext, and can never read it. You can turn sync off or unpair at any time.
The Relay app connects to the internet only in these cases, and never sends your vault details in a form anyone else can read:
The keyboard itself does not need the internet to type your details: on Android it ships without the internet permission, and on iOS it works with “Allow Full Access” turned off.
Your vault is encrypted on your device. Access is protected by your device biometrics (Face ID / Touch ID) or passcode. Items you mark as sensitive require biometric authentication each time before they can be inserted. Relay will not insert saved details into password fields.
Relay is free to start. Any paid features are purchased through Apple's App Store or Google Play. We never receive or store your payment card details; those are managed by Apple or Google under their own terms.
Relay is not directed at children under 13. We do not knowingly collect account information (name or email) from children under 13. If you believe a child has provided us their information, contact us and we will delete it.
Your vault lives on your device (and, if you sync, as ciphertext we cannot read), so you control it directly: view, edit, or delete any item at any time, and uninstalling the app removes it from the device.
If you have an account, you have the right to access, correct, or delete the account data we hold (your name and email), including under the UK/EU GDPR where it applies. Email info@relaykeyboard.com and we will action it. You can also stop all data collection by using Relay without an account.
If this policy changes, we will update this page and revise the date above. Material changes will be reflected here before they take effect.
Questions about privacy? Email info@relaykeyboard.com.
Download for your device below. Same encrypted vault everywhere, no account required.