Flexible key management & recovery for wallets
Use Evervault to implement secure key management and recovery flows for your wallets, backed by secure enclaves.
Talk to an ExpertEnclave-backed key management infrastructure for wallet providers
Use Evervault to implement any key management flow for crypto wallets, including transaction signing, key recovery, and wallet backups.
Simplified user experience
Evervault is an invisible building block that lets you implement secure and compliant transaction signing and key recovery flows without hindering your user experience. Easily integrate with third-party providers for SMS or email recovery, or implement two-factor authentication to minimize risk.
Enclave-backed
Evervault Enclaves lets you verify that all key operations take place in a signed and sealed secure enclave, powered by AWS Nitro Enclaves. Keys never exist in plaintext anywhere outside of the secure enclave.
Dual-custody model
Evervault’s dual-custody model means you never need to handle keys in plaintext, and Evervault never stores or sees any of your data. All sensitive operations take place in an attestable secure enclave.
Build any application that uses your crypto keys. We’ll secure it.
Build an Enclave
Build your custom key operations and simply deploy it to Evervault. Enclaves are easily configured to communicate with APIs for sending emails or SMS messages, and to verify authentication data like two-factor authentication.
Encrypt your keys
Use Evervault’s SDKs to encrypt private keys or recovery phrases on the user’s device, within an Enclave, or on your infrastructure. Evervault never stores any of your encrypted data.
Sign and recover
Your users communicate directly with your Evervault Enclave to perform key recovery, alongside additional verification or authentication steps like SMS or 2FA.
All operations take place in a signed and sealed AWS Nitro Enclave, so you can attest that keys are not shared or processed anywhere else. This means transaction signing and key recovery can take place without your infrastructure ever handling users' private keys.
SMS
Third Party
2FA
User Device
Third Party
PCR1 5fefccave82
PCR2 d8b02113aaj
PCR8 c7r861268d1