Back to Articles

What Happens to Your Private Vault When You Die: Digital Legacy Explained

A zero-knowledge vault has no back door, even after you die. Here's what Apple's Legacy Contact can reach, what it can't, and how to plan ahead.

What it is

Say something happens to you. Your Privara vault stays exactly as locked as it was the day before. Not Apple, not a family member, not a court can open it without the PIN. That's the tradeoff built into zero-knowledge encryption: the same design that keeps your photos, videos, documents, and contacts private from everyone else while you're alive keeps them private after you're gone too — unless you've planned for it.

Compare that to how Apple's own system works. Since iOS 15.2, Apple's Legacy Contact feature lets someone you designate request access to your iCloud data after you pass away — Photos, Messages, Notes, Files, downloaded apps and their data, Contacts, Calendar events, and device backups. To use it, your Legacy Contact needs an access key you set up in advance, plus a death certificate, submitted through Apple's dedicated Digital Legacy site. What it doesn't reach: your iCloud Keychain passwords, any licensed or subscription media, or a third-party app's own separate login. Apple also requires legal documentation — generally a death certificate, sometimes a court order — before it will help with any deceased user's account at all, and the exact requirements vary by country.

A private vault app sits outside all of that. It isn't part of your iCloud account. And if it's zero-knowledge, there's no copy of your PIN sitting on a server anywhere for anyone to request.

How it actually works

Apple's process has real friction on purpose. The access key, the death certificate, the date-of-birth check, and a verification wait time all exist to stop anyone but your intended contact from claiming your data. Never saved an access key? Your family can still remove Activation Lock from your devices, but only after your account and its data are removed entirely — slower, and more limited than a Legacy Contact would have been.

A vault app built on zero-knowledge encryption works differently by design. Zero-knowledge means the provider itself never holds a copy of your key or password — that's what makes it meaningfully private in the first place. But it comes with a hard consequence: once a key or PIN is truly lost, there's no general way to recover what it protects. No support ticket, no identity check, no court order reopens it. Same reality covered in what recovery is and isn't possible if you simply forget your own PIN — death changes who's asking, not what's technically possible.

It also helps to know what's backed up to iCloud and what stays local, since a device backup and a vault's own encryption are two separate things. A backup can preserve the encrypted vault file, but it doesn't hand anyone a way around the PIN protecting it.

Why it matters for your privacy

This isn't a flaw to feel uneasy about. It's the same property that keeps your vault safe from a thief, a repair technician, or anyone who borrows your phone. The honest version of this feature is that it protects you unconditionally — no exception for people with good intentions after you're gone.

So plan for it on purpose, rather than leaving it to chance. A few concrete options: store the PIN in a password manager's emergency-access feature, so a trusted person can reach it only under conditions you define. Include it with other estate documents your executor already knows to look for. Or just tell one person directly, the same way you might share a safe combination. None of this is about hiding anything from anyone — it's about deciding, on your own terms, who should see what's yours if you're no longer able to say so.

How Privara handles this

Planning for this is simpler when everything private lives in one place instead of scattered across separate apps and accounts. Privara keeps your photos, videos, documents, and contacts behind one AES-256-encrypted vault, so there's exactly one PIN to think about — not a different login for every app that happens to hold something private.

A few reasons that makes Privara the best way to handle this. The vault is encrypted at rest with AES-256, not just hidden from view, so there's genuinely nothing to see without the PIN. It requires no account, and nothing is uploaded anywhere by default — a real zero-knowledge design, not a marketing label. And because it opens from behind an ordinary-looking calculator, day-to-day privacy doesn't depend on anyone ever guessing there's a vault to ask about in the first place. Want to share access with one specific person without handing over the whole vault? A second PIN opens a completely separate vault — useful for keeping a succession plan narrow and deliberate.

One honest caveat: enable iCloud sync for your device backups, and a copy of the encrypted vault file may end up in that backup under iCloud's own access rules — separate from the vault's own PIN, which still has to be entered either way. Decide what you want backed up with that in mind.

Ready to put everything private in one place? Download Privara on the App Store and set your PIN today — then decide, on your own schedule, who should have it after you.

Frequently Asked Questions

Can my Legacy Contact open my Privara vault?

No. Apple's Legacy Contact can reach iCloud data like Photos, Messages, and device backups, but it has no path into a third-party app's own encrypted vault. Privara is zero-knowledge, so there's no separate mechanism for Apple, a Legacy Contact, or anyone else to unlock it without the PIN.

What happens to my vault if I never share the PIN and never set up a plan?

The content stays encrypted and inaccessible indefinitely. That's the same property that keeps it private from everyone else while you're alive — there's no master key, recovery email, or support process that can open it after the fact.

Does iCloud backup include what's inside my vault?

Depends on your settings, and it's worth checking rather than assuming. Some vault content may be included in a device backup while the vault app's own encryption stays intact, which means a restored backup still requires the PIN to open the vault — backup alone isn't a bypass.

Is there a way to give a trusted person access without weakening my day-to-day privacy?

Yes. The safest approach is deciding it on your own terms while you're able to: write the PIN into a password manager entry or estate document that only your chosen person can reach after you're gone, rather than relying on any third party to grant access later.

What should I actually do this week?

Decide who, if anyone, should be able to open your vault if something happens to you. Then put the PIN somewhere they can reach only when the time comes — a password manager's emergency-access feature or a sealed instruction with your other estate documents both work well.

Conclusion

A private vault stays private because nobody but you can open it — that includes after you're gone, unless you've planned ahead. The same PIN that keeps your photos, videos, documents, and contacts safe today is the only thing that will ever open them again. Decide now, on your own terms, who should have it and how they'll get it.