Bank-Grade Security

Your data. Your control.
Zero compromise.

SafeKept is built with security at its core. We use industry-leading encryption and robust application-layer security to ensure your most sensitive information stays private.

How We Protect Your Data

AES-256-GCM Encryption

All sensitive data is encrypted at the application layer using AES-256-GCM before it reaches our database. Even if our servers were breached, your data remains unreadable.

Application-Layer Encryption

All sensitive vault data is encrypted using AES-256-GCM at the application layer before it is written to the database. Encryption is applied server-side using securely managed keys – your vault data is never stored in plain text.

Secure Infrastructure

Our infrastructure runs on industry-leading cloud providers with SOC 2 Type II compliance. All data is stored in EU data centres with strict access controls.

Key Rotation

Encryption keys can be rotated at any time. Our system supports seamless key migration without any downtime or data loss.

Audit Logging

Every access, modification, and sensitive action is logged with immutable audit trails. You can review who accessed what and when at any time.

Emergency Lockdown

If suspicious activity is detected, our admin team can immediately lock down affected accounts while we investigate. Your security is our priority.

Executor Access Protection

When someone claims executor access, we verify their identity through multiple layers of security.

1

Multi-Step Verification

Executors must complete identity verification including photo ID, a selfie with ID, and a death certificate. Our team reviews submissions before access is granted.

2

Document Upload Required

Death certificates and legal documentation are required and verified before any estate access is granted.

3

72-Hour Security Period

Once your identity is verified and approved, a mandatory 72-hour security period begins before notifications can be sent. This gives time for any concerns to be raised before estate notifications are dispatched.

4

Dispute Mechanism

Any family member or interested party can dispute an estate claim within the cooling period, triggering an admin review.

5

Granular Access Levels

Executors can be granted different access levels – from view-only to full management rights.

6

Activity Notifications

All executor actions trigger notifications to remaining trustees and logged in perpetuity.

Compliance & Standards

SafeKept is designed to meet the highest standards of data protection and privacy.

GDPR Compliant

Full data export, right to erasure, and granular consent management.

UK DPA 2018

Compliant with the UK Data Protection Act and ICO guidelines.

SOC 2 Type II

Our infrastructure providers maintain SOC 2 Type II certification.

Questions about security?

Our team is happy to answer any questions about how we protect your data.