Clipboard privacy

How to Keep a Private Clipboard History on Windows

Build a searchable local Windows clipboard history while understanding what is stored, what is encrypted, and what should never be copied casually.

By Osenpa Published Reviewed

Short answer

Osenpa Clipboard keeps history on the current PC, but regular history is not encrypted. Privacy filters are also off until you enable them.

Test the rules you need, use Pause for a copying session that should not be recorded, and put only selected text in encrypted Locked Notes.

When to use this method

This guide explains the difference between keeping data on one PC, preventing capture and encrypting selected notes. It is suitable for a personal local clipboard workflow. It is not a substitute for a password manager, company DLP system, managed audit policy or cross-device security service.

How we checked this guideCapture controls, encryption scope and a practical failure case.
What we reviewed
Reviewed fresh-install filter defaults, application and content rules, Pause, local history and Locked Notes against the current Osenpa Clipboard Manager source.
What we confirmed
Initial blocking rules are disabled and require deliberate setup plus testing. Pause stops new history capture until you resume it; vault encryption applies only to content deliberately stored in Locked Notes.
Important limit
A filter that was never enabled cannot block a copied password. Enable and test the rule first, or use Pause before the sensitive sequence rather than assuming automatic protection.

Understand the three privacy layers

Local history

Supported clips are written to a SQLite database on the PC so they can be searched later. The app does not upload clipboard contents for history, search, Smart Collections or Clipboard Stack, but regular history is not encrypted at rest.

Capture prevention

Pause and privacy filters act before a new item is saved. They do not encrypt old history and do not move an existing item into Locked Notes. A blocked-item counter keeps only the date, reason and count, not the rejected text.

Encrypted Locked Notes

Locked Notes is a separate area for text you choose to protect. Its contents do not appear in normal history, Favorites, Smart Collections, Clipboard Stack or Stack Profiles. Forgetting the PIN or passphrase means the notes cannot be recovered.

Set up private clipboard history

Decide what the history is for

Write down which work should be searchable and how long it needs to remain. Auto-delete can be disabled or set from 1 to 360 hours. The regular unpinned item cap can be set from 100 to 100,000. Pins and Favorites are protected from routine cleanup, so review them separately.

Configure privacy filters

In Settings, enable only rules you understand. You can exclude a selected application, add the most recent source application, skip a detectable private or incognito browser title, use built-in patterns for common sensitive text or enter a custom regular expression. Use the test box with invented text before relying on a rule.

Pause capture when needed

Pause for 5 minutes, 15 minutes, 1 hour or indefinitely before copying a sensitive sequence. Windows copy and paste still work, but new copies are not stored by the app. The last item copied during Pause is not captured later when monitoring resumes.

Move selected secrets to Locked Notes

Create a PIN or passphrase you can remember without writing it in regular clipboard history. Locked Notes uses encryption and integrity protection inside the local database. Repeated wrong PIN attempts add a growing delay. Auto-lock can be configured, and locking when the Windows session locks is enabled by default.

Copy a Locked Note without leaving it exposed

A protected note must briefly enter the regular Windows clipboard when another program needs it. That clipboard is outside the vault, so use the shortest practical exposure time.

Open and reveal only when needed

Titles can be searched and content search is optional. The value stays masked by default; hold the reveal control only while you need to read it. Screenshot protection is requested where Windows supports it, but platform failure does not replace good screen privacy.

Choose clipboard clearing

You can clear a copied vault value after 15, 30, 60 or 120 seconds. Clearing happens only if the Windows clipboard still contains that same value, so a newer copy is not erased by an older timer.

Separate session-lock behavior

Locked Notes can lock when Windows locks. Clearing the general Windows clipboard at session lock is a different setting and is off by default. Review both controls instead of assuming one enables the other.

Privacy boundaries

Assumptions to avoid

  • Assuming regular history, Clipboard Stack and Locked Notes share the same encryption
  • Treating title-based private-window detection as a guarantee
  • Treating privacy filters as a password-manager or DLP guarantee
  • Expecting blocking rules to work before setup
  • Leaving regular history unreviewed after a sensitive task
Confirm locally

Checkpoint: test your boundary

  • Review Windows cross-device clipboard sync separately because it is controlled outside this app.
  • Enable one blocking filter, copy a harmless test token and confirm it is not stored.
  • Check that Pause keeps a harmless test clip out of history, then clear regular test history while leaving one deliberate Locked Note intact.
  • Lock Windows and confirm Locked Notes requires authentication again. Test any clipboard-clear timer with invented text.

What can still use the network

Clipboard contents are not needed for local capture and search. The app can check public version metadata in the background, cache a public supporter-name list, and open the Store, website, support, social or donation destination when you select a link. Those actions are separate from clipboard data. No cloud sync or team sharing is provided.

Privacy filters in Osenpa Clipboard Manager
Step by step

Osenpa Clipboard Manager

Set local retention, Pause and tested privacy filters, while keeping encrypted Locked Notes separate from regular history.