Built to hold the most sensitive things a household has.
FamilySafe keeps passwords, documents and final wishes in one place. That only works if the security is honest, specific and verifiable. Here is exactly how your information is protected, and how we hold ourselves to account.
Six controls that sit under everything you store.
Zero-knowledge by design
Documents and sensitive fields are encrypted before they leave your device. We hold the infrastructure, not your keys, so we cannot read your content.
Encrypted in transit and at rest
Everything moves over modern TLS and is stored encrypted. Files are encrypted individually, not just the disk they sit on.
UK data residency
Your data is hosted in the United Kingdom on GDPR-compliant infrastructure, and does not leave UK jurisdiction in normal operation.
Role-based access
Sharing is permission-led. A partner might see everything, an adviser only the financial section. You grant and revoke access at any time.
Multi-factor authentication
Accounts are protected with MFA, and trusted-contact verification gates the moments that matter, like Probate access.
Audited access logs
Every access to a shared record is logged and visible to you. You can see who reached what, and when, with nothing hidden.
What happens to a document when you add it.
Encryption is easy to claim and hard to verify. So here is the path a file actually takes, from your hand to UK storage, with nothing readable in between.
On your device
You add a passport scan or a policy. It is encrypted locally, on your device, before anything is sent.
In transit
The already-encrypted file travels over modern TLS. Anyone intercepting it sees ciphertext, not your document.
At rest, in the UK
It is stored encrypted on UK infrastructure. We can hold it and move it, but we cannot open it. Only your keys can.
You decide who sees what, and you can change your mind.
Security is not only about keeping people out. It is about giving the right people the right access, on your terms, and letting you take it back.
Granular sharing
Share a whole record, a single section, or one document. Access is scoped to exactly what each person needs.
Revoke anytime
Permissions are not permanent. Withdraw access in a tap, and the change takes effect immediately.
Conditional emergency access
Nominees reach what you have chosen only when the conditions you set are met. Until then, it stays closed.
Export and delete
Your data is yours. Export it in standard formats, or delete your record entirely, at any time.
We state our certifications by status, never before they are granted.
Trust is earned in public. Each item below is shown with its real status. We will update this page as certifications are awarded, not before.
Certifications are displayed by status and are never shown as certified before they are granted. Registration and VAT numbers are placeholders until confirmed for publication. ISO 27001 is on the roadmap and is not yet certified.
Found a vulnerability? Tell us, and we will act.
We welcome reports from security researchers and customers. Email our security team with the details and steps to reproduce. We aim to acknowledge every genuine report and keep you updated as we investigate.
Disclosure policy, scope & PGP key to be published before launch- A clear description of the issue
- Steps to reproduce it
- The impact you think it has
- How we can reach you
Honest answers to the questions people ask first.
Can FamilySafe staff read what I store?
Where is my data stored?
What happens if I lose my password?
Is my information encrypted on my phone?
How is Probate access kept secure?
Security you can read, not just trust.
Get your household in order on infrastructure built to hold it. Free to start, no credit card.