Live data from Hacker News

Show HN: End-to-End Encrypted Dead Man's Switch

cipherwill.com

21–30 of 56 posts

Re: Show HN: End-to-End Encrypted Dead Man's Switch

#21
post #11

Earlier quoted context omitted.

Can you explain how the encryption works, who holds the keys, etc in detail? Your website seems to be very light on details.

you can check on https://www.cipherwill.com/how-it-works just select "I understand how encryption works"

> you can check on https://www.cipherwill.com/how-it-works just select "I understand how encryption works"

This is very high-level and doesn't actually answer the question asked.

I also don't see anything here regarding the decentralized blockchain storage you mentioned in another comment. How does that fit in here?

Re: Show HN: End-to-End Encrypted Dead Man's Switch

#22
post #3

I feel like these services have a chicken egg dilemma. For example, I'm highly interested in it, but don't sign up because I don't know if they'll be around in a year or 10. So I'd like to see one long established before going all in, but it's hard for one to get long established without early users.

I totally get that dilemma! It’s hard to commit without knowing if a service will be around long-term. Cipherwill is dedicated to the long haul and is also hosted on decentralized blockchain storage for added security and longevity.

> Cipherwill is dedicated to the long haul and is also hosted on decentralized blockchain storage for added security and longevity.

Which blockchain? In what sense is it decentralized from perspective of CipherWill users?

Re: Show HN: End-to-End Encrypted Dead Man's Switch

#23
I mean, just a regular will can cover all of this for you. For real assets listed on the page such as real estate, investments, etc, a will is the only real way to sort those out actually (unless you want whatever the default proceeding is where you're from). If you're the inheritor of someone, you can't just go and transfer their bank contents to your own account. As for things such as files, pictures, etc, you can write a master password down in your will if it's that important, but not important enough to share ahead of time. Most people I know though just share their password with their husband/wife.

This looks like a SaaS solution in search of a problem.

Re: Show HN: End-to-End Encrypted Dead Man's Switch

#24
post #19

From: https://www.cipherwill.com/how-it-works > Each security factor is represented by a public/private key pair, which is used to encrypt your data on your device. So where are the private keys stored? AFAICT, this is just a web app and I know of no way to securely store a private key from one. Even if there is a desktop application and my private key is stored there, what happens if I lose my desktop? Am I locked o…

Thanks for your feedback! Here’s a quick response to your concerns:

1. Private Key Storage: Private keys are derived locally from your security factors when you set up them.

2. Time Capsule Keys: The release of "time capsule" keys is governed by strict protocols, ensuring they’re only accessible at the specified time.

3. AES Encryption: We use AES-256, not 512, will fix that typo.

4. End-to-End Encryption: yes, End-to-end encryption requires both you and your beneficiaries to enable security factors.

Re: Show HN: End-to-End Encrypted Dead Man's Switch

#25

I mean, just a regular will can cover all of this for you. For real assets listed on the page such as real estate, investments, etc, a will is the only real way to sort those out actually (unless you want whatever the default proceeding is where you're from). If you're the inheritor of someone, you can't just go and transfer their bank contents to your own account. As for things such as files, pictures, etc, you can…

I understand your point — traditional wills are essential for physical assets. However, Cipherwill specifically addresses the complexities of digital assets (crypto and other data) which aren't always covered by standard wills. It provides a secure way to manage online accounts and sensitive data. Thanks for sharing!

Re: Show HN: End-to-End Encrypted Dead Man's Switch

#26
post #19

From: https://www.cipherwill.com/how-it-works > Each security factor is represented by a public/private key pair, which is used to encrypt your data on your device. So where are the private keys stored? AFAICT, this is just a web app and I know of no way to securely store a private key from one. Even if there is a desktop application and my private key is stored there, what happens if I lose my desktop? Am I locked o…

Thanks for your feedback! Here’s a quick response to your concerns: 1. Private Key Storage: Private keys are derived locally from your security factors when you set up them. 2. Time Capsule Keys: The release of "time capsule" keys is governed by strict protocols, ensuring they’re only accessible at the specified time. 3. AES Encryption: We use AES-256, not 512, will fix that typo. 4. End-to-End Encryption: yes, End-t…

Can you expand on "strict protocols" please?

Re: Show HN: End-to-End Encrypted Dead Man's Switch

#28
post #19

From: https://www.cipherwill.com/how-it-works > Each security factor is represented by a public/private key pair, which is used to encrypt your data on your device. So where are the private keys stored? AFAICT, this is just a web app and I know of no way to securely store a private key from one. Even if there is a desktop application and my private key is stored there, what happens if I lose my desktop? Am I locked o…

Thanks for your feedback! Here’s a quick response to your concerns: 1. Private Key Storage: Private keys are derived locally from your security factors when you set up them. 2. Time Capsule Keys: The release of "time capsule" keys is governed by strict protocols, ensuring they’re only accessible at the specified time. 3. AES Encryption: We use AES-256, not 512, will fix that typo. 4. End-to-End Encryption: yes, End-t…

Thanks for responding!

What are these "security factors" you keep mentioning? It's a vague term and I don't see a definition on your website. Can you also describe how private keys are derived from them? That's what I'm most curious about. Is this derivation process something that could be replicated by an attacker?

Re: Show HN: End-to-End Encrypted Dead Man's Switch

#29
post #26

Earlier quoted context omitted.

Thanks for your feedback! Here’s a quick response to your concerns: 1. Private Key Storage: Private keys are derived locally from your security factors when you set up them. 2. Time Capsule Keys: The release of "time capsule" keys is governed by strict protocols, ensuring they’re only accessible at the specified time. 3. AES Encryption: We use AES-256, not 512, will fix that typo. 4. End-to-End Encryption: yes, End-t…

Can you expand on "strict protocols" please?

"strict protocols" refer to our will execution schedule, which ensures that the keys are only accessible after the switch is triggered. Even if someone were to hack the system and access the keys before execution, only the designated beneficiaries would have the ability to decrypt the data.

Re: Show HN: End-to-End Encrypted Dead Man's Switch

#30
post #16

Earlier quoted context omitted.

totally understand your concerns, especially with your solid setup using Yubikeys and sops. We're actually adding Yubikey support for end-to-end encryption too, focusing on good UX without sacrificing security. Plus, we're using homomorphic encryption, so your data stays secure while you're alive, so family members could not empty you're wallets. Appreciate your feedback!

Are you planning to release source code? Without at minimum client sources matching the builds, all assertions of trustlessness are pretty void. Doing under a free/open-source license would address some further concerns about long-term sustainability (which seems especially relevant here).

We’re exploring the possibility of releasing some source code, but we’re not sure how that will fit into our overall development strategy. Transparency and trust are important to us, and we’ll keep your suggestions in mind as we move forward.
Post reply on HN