KeyCourier / Support

Help with owner-approved credential delivery.

KeyCourier is a native macOS app with an iPhone companion. It lets you approve eligible requests and send a new API key or password to your paired Mac without putting credential text in an AI response.

Contact support

Email [email protected] for help, feedback, or accessibility questions.

Include the KeyCourier version, macOS or iOS version, and the action that failed. Do not send an API key, password, pairing code, private CloudKit record, or screenshot that contains a secret.

Pair the iPhone companion

Sign in to iCloud on the Mac and iPhone. Enable iPhone companion in KeyCourier Settings on the Mac, then register the iPhone in KeyCourier Companion.

Approve the exact registration on the Mac. Compare the pairing code shown by both apps. Confirm the match on the iPhone with Face ID or the device passcode. Only one iPhone can be trusted at a time.

Approve a request

The Mac app publishes only metadata for credentials that you marked as eligible for iPhone approval. The iPhone notification contains no credential value. Open the request, check the destination and reason, then approve or decline with Face ID or the device passcode.

If the Mac is locked or closed, the decision waits in the private CloudKit database until KeyCourier can process it or the request expires.

Add or replace a credential

Paste one API key or password. If a service needs both values, choose username and password. A display name is optional. Existing entries start in their current format when you choose Replace.

The iPhone encrypts the value for the paired Mac, clears the form, and sends the encrypted envelope. The Mac imports it into the protected Keychain while KeyCourier is open and unlocked.

If a notification is missing

  • Check that the iPhone has an available iCloud account.
  • Check that KeyCourier Companion has notification permission in iPhone Settings.
  • Open the Requests tab and pull to refresh. A push notification is a refresh hint, not the request itself.
  • Keep the paired Mac open and unlocked when you want it to process an approval or encrypted credential.

Read the privacy policy

KeyCourier does not give the developer access to your plaintext credentials. The KeyCourier privacy policy explains local Keychain storage, private CloudKit records, notification data, and deletion controls.

Last updated 28 August 2026.