OurLifeVault holds the documents, credentials, and financial details families care most about keeping private. Here's exactly how we protect them — no vague promises, just the actual architecture.
Rather than one shared password protecting everything, each piece of sensitive data gets its own lock.
Every document and stored credential is encrypted with AES-256-GCM under its own randomly generated key — not a single master key shared across everything you store.
Each document's key is wrapped with a separate app-level key before it's ever stored, so the key and the data it protects are never sitting side by side unprotected.
Even a file's name is encrypted before storage — a database-only exposure wouldn't reveal what a file is, just an opaque, meaningless label.
Grant access to a single document with a family member or advisor — everything else in your vault stays private by default.
Change your mind, or a relationship ends — remove someone's access to a shared document instantly, with no cleanup required on your part.
OurLifeVault's business is the product you pay for, not your information. We built this to be a vault, not a data source.
Access to production systems is restricted to what's needed to operate the service, and every document is encrypted before it's stored. We built the system this way deliberately — protecting what you share with us is the whole premise of the product.
Your documents and data remain yours. Account deletion removes your stored information from active systems — reach out at [email protected] for specifics on your situation.
If we ever identify an issue that affects your data, we'll tell you plainly and directly — not bury it in fine print. Security is a continuous process for us, not a one-time checkbox.
OurLifeVault is almost ready. Join the waitlist and we'll let you know the moment you can get started.