Using the vault

Adding your first vault item

Creating, naming and scoping an item — and what happens to it the moment you save.

3 min readUpdated 16 Aug 2026
On this page

Start with the single item your heir would be most stuck without. Usually that is the login to your primary email, because almost every other account can be recovered through it.

Adding it

  1. 01

    Choose a type

    The type decides the fields you get. See vault item types.

  2. 02

    Write a title that gives nothing away

    The title is stored unencrypted so lists can be shown. “Primary email” is right. “Gmail — dave@… / Tr0ub4dor” is a leak.

  3. 03

    Fill in the fields

    Everything here is encrypted. Be generous with the notes field — context your heir does not have is the most common reason an inherited credential is useless.

  4. 04

    Set the release scope

    Released to your heir on finalization, or kept private to you. See release settings and scope.

  5. 05

    Save

    The item is encrypted on the device with a key generated for it alone, and only the ciphertext is stored.

The vault item editor for a login, with title, username, password and notes fields
Structured fields mean your heir sees a labelled credential rather than having to parse your prose.

What happens when you save

  1. A fresh random key is generated for this item, on your phone.
  2. The item's contents are encrypted with it, using authenticated encryption — so tampering is detected rather than silently decrypting to something else.
  3. The key itself is split into shares, no one of which reveals anything, and distributed so that reassembly requires the on-chain release condition to hold.
  4. The ciphertext is stored. Your title and category travel alongside it in the clear.

At no point does a readable copy of the item, or a usable copy of its key, exist outside your device. See how the vault is encrypted.

Writing for a stranger in a crisis

Your heir will read this without you there to explain it, possibly years from now, while grieving. Assume no context.

A useful item answers four questions

What is this account for? How do I get in? What will block me — two-factor, security questions, a device I do not have? What should I actually do with it once I am in?

"Coinbase — email and password" is a credential. "Coinbase — holds about half the Bitcoin. Two-factor is on the SIM in the safe. Sell or transfer, do not leave it sitting; the account is in my name and they will freeze it once they know" is an inheritance.

Editing and deleting

Items can be edited or deleted at any time while your wallet is active. Editing re-encrypts with a fresh key rather than reusing the old one.

Deleting is permanent and removes the item from the estate entirely.

What to add next

A reasonable starting set:

  1. Primary email login.
  2. Where your recovery phrase backup physically is — as a note, not the phrase.
  3. Exchange or brokerage accounts, with instructions.
  4. Your solicitor or executor as an emergency contact.
  5. A final message.

Keep reading

Still stuck?

Tell us what you were doing and what you expected — never your recovery phrase, private key, or a vault passphrase. Nobody from Legacy Wallet will ever ask for those.

Opens a support ticket and emails you the link. We reply by email, usually within a couple of days.