How to get your data out, correct it, or have it destroyed — and what happens when someone other than you asks us for it.
Machine-readable, including account details, guardian records, check-in history and billing. Vault contents come out as ciphertext plus your own decryption tooling — we cannot decrypt them for you.
The same data in a documented format. Available instantly from settings without contacting us; this route exists for when you want it certified.
Most fields are editable in settings. Use this route for anything you cannot change yourself, such as an invoice record.
Closes the account, exports to you, and destroys our copy within 30 days. Backups age out on a rolling 35-day cycle. Invoices survive 7 years because tax law requires it.
Suspends escalation and notification while a dispute is resolved. Your guardians are told the account is paused, because silence would otherwise mean the opposite of what it means.
Mail privacy@lifevault.example from the address on your account, stating which of the above you want. We will ask you to authenticate — usually by confirming a code sent to your registered contact — but we will not ask why you are asking.
There is no fee. We answer within 30 days, and in practice within three working days. If a request is unusually complex we may extend by a further two months, and we will tell you within the first 30 days if that happens.
We hold your name and contact details because someone nominated you. You can ask us what we hold, correct it, or decline the role entirely, at the same address. Declining removes your details and notifies the account holder that they need to nominate someone else.
If the escalation ladder has completed and the vault has released, recipients receive exactly what the account holder assigned to them, and nothing further. We cannot provide vault contents beyond that assignment, because we cannot read them.
With proof of authority we can close the account, confirm the account existed, and provide billing records. We cannot bypass the release schedule or the assignment the account holder chose, and we will not, on the reasoning set out in the security model.
We require valid legal process and we scrutinise its scope. We notify the affected user unless we are legally prohibited from doing so, and we challenge requests that are overbroad.
What we can produce is limited to what we can read: account details, guardian contact details, check-in timestamps and billing. Vault contents can only be produced as ciphertext — no order can compel us to hand over a key we do not have.
Legal process: legal@lifevault.example.
Tell us and we will review it. You also have the right to complain to a supervisory authority — in the UK, the Information Commissioner's Office — and you do not have to come to us first.