Self-custody has no forgot-password. Seal your seed phrase, wallet locations, and recovery instructions in a Capsule — encrypted in your browser and split 2-of-3 so no one, including us, can read it — and it reaches your heir only if you stop checking in.
End-to-end encrypted · 2-of-3 Shamir shares · We can never read your keys
The situation
Sound familiar?
Your crypto lives behind a seed phrase only you know. Without a plan, a lost hardware wallet — or your absence — can put the funds permanently out of reach. Sharing the phrase today is unsafe; taking it to the grave is worse.
What to put in a capsule
A Key holder with the recovery phrase, or clear step-by-step recovery instructions.
A Text note explaining what the assets are and how the recipient should handle them.
Optionally, encrypted files — a keystore, a wallet backup, a video walkthrough — sealed under the same shares and kept on your own storage.
Your secret is encrypted on your device with AES-256-GCM, and the key splits into three Shamir shares. Capsulene stores one powerless share and the ciphertext — never the phrase.
2
One share to your heir, today
Hand your recipient their share now — alone it is mathematically worthless. No plaintext copies floating around, no custodian holding your keys.
3
Delivery only after verified silence
Miss your check-ins and a grace period with reminders comes first. Only then does your heir's share meet ours — and the wallet opens.
2/3
Any two shares rebuild the key; a single share reveals nothing. You hold one, your heir holds one, we hold one — breaching our servers would hand an attacker an encrypted blob and a mathematical dead-end. Not even Capsulene can touch your coins.
FAQ
Good questions
Do I have to put my actual seed phrase in a capsule?
No. Many holders seal recovery instructions, wallet locations, and context — the how — while the what stays in a safe place. If you do seal the phrase itself, it is encrypted in your browser before anything is uploaded and split 2-of-3, so neither Capsulene nor anyone who breaches us could ever read it.
Could Capsulene — or someone who hacks Capsulene — access my wallet?
No. We store one share of three plus the encrypted envelope. A single share is mathematically worthless: rebuilding the key takes two. A full breach of our servers would yield an unreadable blob and a dead end.
Can I protect wallet files, not just a phrase?
Yes. The same capsule can encrypt whole files — a keystore, a wallet backup, a video walkthrough for your heir — under the same 2-of-3 shares. The encrypted files never leave your device: you store them wherever you trust, and only the shares can open them.
What if Capsulene disappears before my heir needs it?
Shares export as portable SLIP-39 recovery phrases, the file format is published, and a self-contained offline decryptor — one HTML file — opens everything with no internet and no Capsulene. Your inheritance path outlives us.
Self-custody, finished
Your keys should not die with you.
Give your wallet a recovery path today — one capsule, one share handed over, one quiet check-in.