Skip to content

App Lock

Captured traffic contains bearer tokens, session cookies and personal data in plain text. App Lock puts the device’s own authentication in front of it.

Go to Settings › App Lock and switch on Require Face ID (or Touch ID or Optic ID, depending on the device). Choose when the app locks again after you leave it:

  • Immediately
  • After 1 minute
  • After 5 minutes

The app also locks every time it launches.

App Lock uses the system’s device-owner authentication, so:

  • Face ID, Touch ID or Optic ID work when they’re enrolled
  • It falls back to the device passcode when biometrics fail or aren’t set up, so the lock always opens for the device’s owner
  • A device passcode is required. If none is set, App Lock tells you so instead of showing a switch that silently does nothing.
  • While locked, the whole app is hidden by an opaque screen, not a blur, because a blurred traffic list still leaks hostnames
  • The snapshot iOS shows in the app switcher is covered too
  • Capture keeps running in the background while the app is locked. The lock protects the screen, not the tunnel.

App Lock is free.