How it works

Leave it. Check in. They claim.

Not for scare. For dignity. Leave what matters. Check in on your schedule. Encrypted in your browser until the people you name can claim.

How it works

Leave it. Check in. They claim.

One path from what you leave to the contacts you name.

Protected by end-to-end encryption. Your live vault is zero-knowledge and encrypts in your browser before upload.

What you can leave

Everything they need in one handoff

More than a single message. Clearer than a shared drive. Every file is set aside for the contacts you name, ready for the day you cannot hand it over yourself.

Docs

Notes, final messages, and instructions they can act on.

Logins

Accounts, passwords, and 2FA codes stored for release handoff, not autofill.

Bank accounts and cards

Account numbers, routing details, and card fields ready for the contacts you name.

Crypto wallets

Seed phrases and wallet recovery details for a claim handoff, not daily trading.

Developer keys

API keys and SSH keys your beneficiaries may need when you cannot hand them over.

Spreadsheets

Inventories, account maps, and practical lists for beneficiaries.

Photos and videos

Memories and messages in your own voice, set aside for the contacts you name.

Legal documents

PDFs, will copies, policies, and other legal document scans.

Logins, bank details, wallets, and keys in clear fields

Structured credential files keep fields organized, with a built-in generator for strong passwords and PINs. Logins can carry a 2FA (TOTP) secret so the contact you name gets working verification codes, not a locked account. Add custom sections when a template is not enough.

We store will and legal document copies. We do not draft wills.

Beneficiaries

Name who can claim

Point someone at the whole vault, a folder, or one file. They do not need an account today.

  • Whole vault, one folder, or one file and its attachments
  • Choose HeirVault-assisted, Invite now, or a shared beneficiary password per contact
  • Witnesses on Pro and Shield vote after the waiting period; a majority starts release early, and only your check-in stops it

Why they can trust it

Protected by end-to-end encryption.

Your live vault encrypts in your browser before upload. That means it is zero-knowledge: HeirVault stores ciphertext and cannot decrypt your live vault. Check-in rules still decide when named contacts can claim.

  • End-to-end and zero-knowledge

    Docs, logins, bank details, spreadsheets, and files encrypt on your device before they reach HeirVault, so we only ever store ciphertext we cannot read.

  • You hold the keys

    Your password unlocks encryption locally. Cleartext stays on your device.

  • You choose who gets access

    Only named beneficiaries get a claim path for what you set aside. Delivery mode decides who can hold that handoff key.

  • Live vault crypto is open source

    The browser encryption library is public on GitHub and npm as @heirvault/crypto. Assisted delivery is a separate path and is not in that library. Not third-party audited yet.