HeirVault

For crypto holders

Seed phrases and wallet notes, sealed until claim.

Leave recovery instructions for people you trust. Your live vault is protected by end-to-end, zero-knowledge encryption. Access opens only after missed check-ins and the waiting period. HeirVault stores encrypted logins for release and does not replace cold storage discipline.

Key handoff

Encrypted until release rules fire

Live check-in

Seed phrase, sealed

Encrypted on your device

Wallet locations

Hardware devices and backups

Exchange instructions

Step by step for your heir

Check-in on schedule

Everything stays sealed

Honest limits

Putting seed material anywhere networked has risk. HeirVault encrypts what you leave in your browser before upload and cannot decrypt your live vault, but it is still a cloud-hosted ciphertext store with account metadata. Prefer metal backups and air-gapped practices for primary recovery. Use this for designated handoff instructions, not as your only copy.

The path

Four steps, start to claim

  1. 01

    Leave

    Stage recovery instructions and sealed notes. Your offline metal backups stay primary.

  2. 02

    Check in

    While you keep checking in, nothing opens and nothing is readable to us.

  3. 03

    Waiting period

    Missed check-ins start the buffer. Reminders reach you first, before anything moves.

  4. 04

    They claim

    Only named beneficiaries can claim their handoff, and only the scope you set.

What people leave

Instructions that stay unread until your rules fire

Seed phrase handoff
A designated recovery phrase or split instructions for a named beneficiary, encrypted until claim. Still follow your own offline backup practice.
Wallet and exchange context
Which wallets exist, where hardware devices live, and what to do first. Not day-to-day login autofill.
Passphrase and derivation notes
Optional 25th-word or derivation context you choose to stage, unlocked only with the claim passphrase you share separately.
Who to contact
Counsel, a co-signer, or a trusted technical contact, with clear scope for what they should and should not do.

How release works

Check in so nothing opens. Stop, and claim can begin.

You set the cadence. Miss check-ins past the waiting period, and only named beneficiaries can claim their handoff. Your live vault is end-to-end encrypted, so HeirVault cannot decrypt it.

Start here

Three files to stage first

  • A wallet map

    Which wallets exist, where hardware lives, and what each one is for.

  • Recovery instructions in plain words

    How to restore, written for your heir, not for you.

  • First-week warnings

    What not to do: rushed transfers, unfamiliar helpers, fake support calls.

Honest limits

What this does not promise

A safe only-copy for seed phrases
Do not treat any online vault as your sole recovery. Keep offline, preferably metal, backups as primary.
A password manager
No autofill, no browser extension vault for daily logins. This is timed handoff for contacts you name.
Hidden account metadata
HeirVault can see account email, billing, and release timing. Your live vault is end-to-end encrypted, so we cannot decrypt those contents.
Protection under coercion
Shield includes a duress passphrase: a second passphrase for when you are forced to unlock. It opens a decoy vault and alerts a trusted contact. It cannot help if your real passphrase was already captured. See the Duress passphrase page for the full threat model.
Legal process over accounts
We may be compelled to produce account records and ciphertext. End-to-end encryption still means we cannot decrypt your live vault without your keys.

Full model on Security. Other entry points: Families, Crypto, Founders, High-risk.

Questions careful holders ask

Safer than plaintext email or an unlocked notes app, because your live vault uses end-to-end encryption before upload. Still not a substitute for offline primary backups. Treat HeirVault as a timed handoff channel with honest cloud and metadata limits.

No. HeirVault does not autofill exchange logins. Leave encrypted passwords, docs, and files for beneficiaries to claim after check-in rules are met.

Only people you trust with that handoff: a spouse, co-trustee, or designated heir. Prefer owner-shared or witness release confirmation on Pro or Shield if inbox compromise is a concern. Do not put everything in one file if split custody fits how you protect recovery better.

No. Your live vault is protected by end-to-end, zero-knowledge encryption. Contents encrypt in your browser before upload, so HeirVault cannot decrypt your live vault. Assisted delivery stores a handoff key only for that beneficiary's handoff and is not end-to-end to the beneficiary alone.

Leave the path. Keep checking in.

Start free with the same leave-and-claim path. Read the security model before you stage anything sensitive.