Security and compliance

We custody your data. We never own it.

That distinction decides everything downstream: what our servers store, what our staff can reach, what a court can compel from us, and what happens on the day you ask us to delete it all.

Zero knowledge

See exactly what our servers see.

Type anything below. Encryption happens in your browser, so what leaves it looks like the right column, and only the right column is ever stored.

What Reep stores

        

Illustrative only. Production vaults use AES-256 with keys derived from your passphrase and never transmitted.

Legal position

RUFADAA and GDPR, designed in rather than bolted on.

Digital inheritance sits between two bodies of law that were not written with each other in mind. Reep is built to satisfy both.

RUFADAA
A lawful path for fiduciaries

Release follows the Revised Uniform Fiduciary Access to Digital Assets Act, so an executor has documented authority instead of a service agreement that forbids sharing.

GDPR
Minimisation and erasure by default

We collect the least we can operate on, consent is explicit and separable, and deletion removes ciphertext rather than flagging a row.

Custody
Custodian, not owner

Our terms grant no licence to your content beyond storing and transmitting it on your instruction.

Residency
Regional data centres

Your vault is stored under the jurisdiction that governs your estate.

Operational security

The controls, stated plainly.

If a claim here cannot be verified by a customer or an auditor, it should not be on this page. Ask us for anything that is missing.

In the browser
Content is encrypted client side before upload. Keys are derived from your passphrase and never sent to us.
In transit
TLS 1.3 on every connection between the app and our infrastructure.
At rest
AES-256 vault blobs, with envelope keys managed outside the application layer.
Sign-in
Multi-factor authentication, session limits and device review.
Release
Guardian consensus plus record confirmation. No single employee or guardian can trigger a transfer.
Logging
Append-only audit trail, hashed, readable by the account holder and their executor.
Disclosure

Found a weakness? Tell us before you tell anyone else.

Send findings to hello@reep.cc with steps to reproduce. We acknowledge within two working days and will not pursue researchers acting in good faith.