How it works

Leave it. Check in. They claim.

One continuous path from what you leave to the contacts you name. Your live vault is protected by end-to-end, zero-knowledge encryption.

LeaveCheck inThey claim

Joint checking for Esme

Encrypted in your browser before upload

Bank account · login · doc also sealed

End-to-end encrypted the whole way. Full walkthrough below.

How it works

Leave it. Check in. They claim.

One path from what you leave to the contacts you name.

End-to-end encrypted

End-to-end encrypted

Docs, logins, bank details, and files encrypt before upload.

Joint checking

Bank account · for Esme

Encrypted
BankFirst National
Account•••• 4821
Routing•••• 0912
Encrypted in browser
Login
Wallet
Doc
Keys on device

Keys stay with you

Encrypted data only

Nothing readable

Protected by end-to-end encryption. Your live vault is zero-knowledge and encrypts in your browser before upload.

What you can leave

Everything they need in one handoff

More than a single message. Clearer than a shared drive. Every file is set aside for the contacts you name, ready for the day you cannot hand it over yourself.

Docs

Notes, final messages, and instructions they can act on.

Logins

Accounts, passwords, and 2FA codes stored for release handoff, not autofill.

Bank accounts and cards

Account numbers, routing details, and card fields ready for the contacts you name.

Crypto wallets

Seed phrases and wallet recovery details for a timed handoff, not daily trading.

Developer keys

API keys and SSH keys your beneficiaries may need when you cannot hand them over.

Spreadsheets

Inventories, account maps, and practical lists for beneficiaries.

Photos and videos

Memories and messages in your own voice, set aside for the contacts you name.

Legal documents

PDFs, will copies, policies, and other legal document scans.

Structured credentials

Logins, bank details, wallets, and keys in clear fields

Structured credential files keep fields organized, with a built-in generator for strong passwords and PINs. Logins can carry a 2FA (TOTP) secret so the contact you name gets working verification codes, not a locked account. Add custom sections when a template is not enough.

We store will and legal document copies. We do not draft wills.

Vault item

Structured credentials

End-to-end encrypted

Login

Username
alex@family.example
Password
••••••••••••
2FA code
284 916

Bank account

Bank
First National
Account
•••• 4821

Card

Number
•••• 9012
Expiry
09 / 29

Crypto wallet

Address
bc1q…7k2a
Seed
24 words sealed

API key

Key ID
hk_live_…9f2a
Secret
••••••••••••

Beneficiaries

Three contacts, three scopes

No account needed yet
E

Esme Laurent

Daughter

Whole vault
S

Sam Chen

Friend

One letter
J

Jordan Lee

Witness

Confirms release

Esme: HeirVault-assisted delivery. Claims everything after the wait.

Beneficiaries

Name who can claim

Point someone at the whole vault, a folder, or one file. They do not need an account today.

  • Whole vault, one folder, or one file and its attachments
  • Choose HeirVault-assisted, Invite now, or a shared beneficiary passphrase per contact
  • Witnesses on Pro and Shield vote after the waiting period; a majority must approve

Why they can trust it

Protected by end-to-end encryption.

Your live vault encrypts in your browser before upload. That means it is zero-knowledge: HeirVault stores ciphertext and cannot decrypt your live vault. Check-in rules still decide when named contacts can claim.

  • End-to-end and zero-knowledge

    Docs, logins, bank details, spreadsheets, and files encrypt on your device before they reach HeirVault, so we only ever store ciphertext we cannot read.

  • You hold the keys

    Your passphrase unlocks encryption locally. Cleartext stays on your device.

  • You choose who gets access

    Only named beneficiaries get a claim path for what you set aside. Delivery mode decides who can hold that handoff key.

End-to-end encrypted

Encrypts in your browser

We store ciphertext

Cannot decrypt live vault

vault · end-to-end encrypted

Joint checking

Bank account · for Esme

E2E

8f3a91c0e2b74d6a1f90c3e8b2d547a1c6e03f9b8d2e4c71a91f90c3e8b2d547a1c6e03f9b8f3a91c0e2b74d6a9c418b2e70b2d547a1c6e03f9b8f3a91c0e2b74d6a1f90c3e851a07c4e29

a1c6e03f9b8f3a91c0e2b74d6a1f90c3e8b2d547c4a19e6b2dc0e2b74d6a1f90c3e8b2d547a1c6e03f9b8f3a917e4d2a60f803f9b8f3a91c0e2b74d6a1f90c3e8b2d547a1c6e0d93c5a18e4

e8b2d547a1c6e03f9b8f3a91c0e2b74d6a1f90c3b7e25d84a0b2d547a1c6e03f9b8f3a91c0e2b74d6a1f90c3e851a07c4e2974d6a1f90c3e8b2d547a1c6e03f9b8f3a91c0e2b7a46f9d2c50

1f90c3e8b2d547a1c6e03f9b8f3a91c0e2b74d6a9c418b2e7003f9b8f3a91c0e2b74d6a1f90c3e8b2d547a1c6e0d93c5a18e48f3a91c0e2b74d6a1f90c3e8b2d547a1c6e03f9b8d2e4c71a9

Ciphertext only

End-to-end encrypted. That means we store ciphertext only.