Recover Your Backup — Two Paths You Control

Use the same encrypted backup + password to recover in the app or with the Self-Contained Recovery Kit.
Both paths are 100% offline — no servers, no login required for the Kit.

No MyColdKey servers required No login required for the Kit Decryption happens locally

How recovery works

Choose your redundancy level: Standard or Shamir (SSS)

Standard backup

One encrypted file (QR, file, or text). Recover with that single encrypted backup and your password.

SSS (Shamir)

Your secret is split into multiple shares. You only need the required number of shares to recover. Ideal for redundancy across locations or people.

Best for multi-location storage or family recovery.

Self-Contained Recovery Kit

Free and Lifetime Pro users can export a complete, portable Recovery Kit — a single ZIP with offline tools and step-by-step instructions. Works on any air-gapped computer. Unlimited copies. Completely standalone — no MyColdKey company required, ever.

What it is

A self-contained recovery package you keep with your backups — offline decrypt tools + walkthrough — so you can recover without installing MyColdKey or signing in.

Why it matters

It gives you a recovery path you fully control. If you still have your encrypted backup and password, you can decrypt even if the app or company no longer exists.

How to get it

Export it directly from the app (Lifetime Pro) or download the app and standalone recovery tools (hosted on GitHub Releases).

How recovery works with the kit

Same two inputs as in-app recovery: your encrypted backup (or shares) and your password. No login required.

  1. Get the kit: export the Self-Contained Recovery Kit ZIP from the app, or download the app and standalone tools (hosted on GitHub Releases).
  2. Open it on the recovery machine (air-gapped if desired) and follow the included walkthrough.
  3. Choose your backup type (Standard or SSS) and enter your password locally. Decryption happens only on that machine.
  4. Recover access using the decrypted material according to your plan.

In the app: MyColdKey → Recover → Scan QR / Import File / Paste Text. Same password and ciphertext; decryption stays local.

Recommended: verify downloads against published SHA-256 checksums. How to verify →

How to verify your download (SHA-256)

Compare the file you downloaded against the hash in the release checksums.txt.

Windows (PowerShell)

(Get-FileHash -Algorithm SHA256 "filename.ext").Hash

macOS / Linux

shasum -a 256 filename.ext

or sha256sum filename.ext

Store copies across locations

Mix with what you already own — without increasing plaintext exposure.

Print an encrypted QR for your safe
Titanium engraving for disaster resistance
Encrypted file on air-gapped SSD
Optional Cloud+ copy (ciphertext only)
Shamir shares for family / multi-location

Your hardware wallet protects the seed phrase. MyColdKey protects the copies — encrypted, unlimited, and vendor-independent.

Found copies stay encrypted — decryption requires your password.
Copies can be stored alongside ordinary data without labeling them as a seed backup.
Create as many copies as your risk model requires — without increasing plaintext exposure.
Store the tools offline (USB / air-gapped drive) alongside your encrypted backups.

One encrypted backup. Store copies across locations. Control stays with you.

FAQ

Can I test recovery before trusting it?
Yes. Create a non-production encrypted backup and recover it fully offline with the Self-Contained Recovery Kit. Once confident, repeat with your real data.
Do I need to log in to recover?
In-app recovery works offline after initial sign-in. The Self-Contained Recovery Kit works completely standalone — no login and no company required, ever.
What if MyColdKey is unavailable?
Your encrypted backups stay fully usable. Recover with the Self-Contained Recovery Kit or the standalone offline tools from GitHub — only your encrypted backup and password are required.
What if I lose the password?
Recovery requires your password. If lost, the encrypted backup remains encrypted. Store your password separately from your backups according to your threat model.
What if I lose some Shamir shares?
With Shamir you only need the required number of shares (M of N). Losing some is fine as long as you meet the threshold.

One encrypted backup. Unlimited copies. Two recovery paths you fully control — for life.

See pricing Security overview