This device does not have a master seed configured. Generate a fresh seed or restore one from your backup words to get started.
v1.39 · build 208 · 5e61253 · 2026-10-10 · demo
Vault is already initialized.
A master seed exists on this device. To generate or restore a different seed, perform a Factory Reset from the Dashboard first.
Choose Seed Length
12words
24words (recommended)
Entropy Injection
Type at least 50 characters of physical entropy below.
Roll casino dice and type the results (e.g. 3 1 6 4 2 5 1 6 3…),
or blindly mash the keyboard. Do not use words, dates, or patterns.
0 / 50 characters
READY
Your physical input is SHA-256 hashed and mathematically XOR-combined
with the system RNG to guarantee true randomness.
Restore Master Seed
Enter your BIP-39 recovery words one per box, or paste all at once into the first box.
Restore via Seed XOR
Combine your XOR shares to reconstruct the original master seed. Each share is a valid BIP-39 mnemonic.
Recovered Master Seed
Recover from Shamir Shares
Enter your SLIP-39 shares one at a time. You need the minimum threshold (e.g., 2 of 3) to recover your master seed. Shares use a different wordlist than BIP-39.
0 shares
No shares entered yet. Add at least the threshold number of shares to recover.
▼ SLIP-39 Passphrase (if used during split)
Only enter a passphrase if one was set when the shares were generated. Leave blank if none was used.
Write Down Your Recovery Words
Write these words down on paper in order. You can view them later from the Seed Management tool on the Dashboard, but always keep a physical backup.
Fingerprint: --------
Hybrid Entropy Applied
If you lose these words, your bitcoin is gone forever. There is no recovery, no customer support, no reset. Store this backup in a physically secure location separate from this device.
Verify Your Backup
Your words are now hidden. Prove you wrote them down correctly by entering the requested words from your backup, or scan your SeedQR.
Fingerprint: --------
— OR —
TEMPORARY SESSION ACTIVE
Volatile RAM only — nothing is saved to disk. Seed vanishes on power off.
TEMPORARY SEED ACTIVE
A temporary seed is loaded into RAM only. This seed will be erased on lock or reboot — your master vault remains safe on disk. Lock the vault to return to the master seed.
Courier, PSBT Signer, and Backup Archive require the exFAT transfer partition. Once per session.
Vault Locked
No seed loaded
← Dashboard
--------
Master Seed Active
-- words loaded into RAM
Loading...
Keys & Seeds
Backup & Recovery
Signing & Transfer
Private Data
Device Options
// DISPLAY SCALING
Resize the entire interface for high-DPI Macs versus standard Linux laptops. Applied instantly; persists across soft reloads.
Sound
Sound on hover and click for supported devices
VOL50%
Idle Timers
Auto-Lock returns the vault to the password prompt after the chosen number of idle minutes. Display Sleep blanks the screen via the OS power-management bridge. Set either to 0 to disable.
Coldcard
Pair a Coldcard so the PSBT Signer can ask it for a co-signature over USB. Every signature is approved on the Coldcard's own screen. SafeKeep only ever uses the Coldcard paired here.
Checking…
Trezor
Pair a Trezor One so the PSBT Signer can ask it for a signature over USB. To unlock it, you click your PIN with the mouse on a grid of blank buttons, matching the shuffled numbers shown on the Trezor's own screen (like Sparrow). Every signature is approved on the Trezor. SafeKeep only ever uses the Trezor paired here.
Checking…
Factory Reset
Permanently erase the master seed from this device. This overwrites the seed file with random data, then deletes it. This action cannot be undone.
PSBTSigner
sign a transaction
Review and sign Partially Signed Bitcoin Transactions entirely offline. Inspect each detail of the transaction before committing your signature.
Ingest
Review
Sign
Export
Load Unsigned PSBT
Awaiting QR code...
⚠ Signer Fingerprint Mismatch
The active fingerprint doesn't match any signer declared in this PSBT. The
Transaction Audit and destination verification checklist are hidden until the
correct key is loaded — reviewing addresses you can't sign would be misleading.
Unlock the audit by either (a) entering the correct BIP-39 passphrase below,
(b) switching to a Temporary Seed, or (c) ticking
Force Sign by Pubkey Match if you are certain the loaded seed is correct.
Transaction Audit
Signing Key
Signing with the master seed loaded at boot. Fingerprint: --------
Point camera at SeedQR...
This seed is NEVER saved to disk. It will be zeroed from memory after signing or when you leave this tool.
Loading...
⚿ Loaded from Library:
A passphrase changes the master fingerprint. If the PSBT was created with a passphrase-derived wallet, you must enter it here too.
Signed PSBT — QR Export
1800 chars
300 ms
Single static frame — density and speed only apply to animated multi-frame QRs.
Note: BlueWallet requires UR-encoding for animated multisig QRs. Please save to Transfer Drive.
Tip: drag the bottom-right corner of the QR to resize it for hard-to-scan cameras.
Point your coordinator wallet's camera at this QR code to transfer the signed PSBT.
⚡ Raw Transaction — Ready to Broadcast
This is the finalized, network-ready transaction in raw hex. Copy this string and paste it into
any Bitcoin node's sendrawtransaction RPC, or use a broadcast service like
mempool.space. This completely bypasses Electrum's PSBT parser.
Fallback Export
Saves to /media/transfer for sneakernet handoff.
PassphraseLibrary
Passphrase Library
Generate, store, and manage passphrases in the encrypted vault. Passphrases can be loaded directly into tools from the library.
Temporary Session Active
The Passphrase Library is running in RAM only. Passphrases cannot be saved to the encrypted vault.
Workspace
Entropy0 bits
Write this passphrase down exactly (or print it), then check your copy. Saving unlocks once your copy matches.
✓ Your written copy matches.
Derived Fingerprintcomputing...
--------
Base fingerprint: --------
⚠ Write this fingerprint down next to your passphrase backup. If you make a typo, the fingerprint changes, and funds sent to this wallet are unrecoverable.
Archive
No saved passphrases
SafeKeep Passphrase Backup
Generated by SafeKeep Vault — store securely alongside your seed backup
Passphrase
Seed Identity
Parent Fingerprint
--------
Checksum Word (#24)
--------
Passphrase Fingerprint (seed + passphrase)
--------
Verify this fingerprint matches your wallet software after import.
Words:0
Entropy:0 bits
Date:
SeedXORSplitter
Seed XOR Calculator
Split a seed phrase into multiple XOR shares for distributed cold storage, or merge existing shares to reconstruct the original. Each share alone reveals nothing — all shares must be combined to recover the seed.
No master seed loaded. Generate or restore a seed first.
Store ALL shares in separate secure locations. You need every share to reconstruct the original seed.
Reconstruction Drill
Physically write down every share, then re-type ALL 0 shares from your physical backup below. The XOR reconstruction must match the seed currently loaded into this tool exactly. A single typo in your physical backup will result in permanent loss of funds — do not skip this drill.
Recovered Seed
BIP-85ChildSeeds
Child Seed Derivation
Derive deterministic child seed phrases using the BIP-85 standard. Generate isolated wallets for different purposes while backing up only a single master.
No master seed loaded.
Derivation Path
—
Parent Fingerprint
—
Child Fingerprint
—
SafeKeep Cold Storage Backup
BIP-85 Child Seed
Parent Identity
Master Fingerprint--------
Checksum Word--------
Derivation path: — — this child seed regenerates from the parent seed using this exact path.
Child Fingerprint
--------
Verify this fingerprint matches your wallet software after import.
Child Seed Phrase
Child Seed Phrase QR
OutputDescriptor
Output Descriptor Builder
Build standardized output descriptors for importing watch-only wallets into any descriptor-aware Bitcoin wallet software. Supports single-sig and multisig configurations with derivation path control.
No master seed loaded. Generate or restore a seed first.
Derivation Pathm/84'/0'/0'
of
Derivation Path (BIP-48)m/48'/0'/0'/2'
No master seed loaded. Key 1 will be auto-derived from your session seed.
Paste Output Descriptor
Paste an output descriptor from Sparrow, Specter, or any coordinator. This tool will check whether your active seed can sign for it.
Awaiting QR code...
Descriptor Details
Type:
Descriptor Fingerprint:
Your Fingerprint:
Output Descriptor
How to import into Bitcoin Core
Copy the .json file to the computer running Bitcoin Core (v0.21 or later), then run these two commands in the folder holding the file. The first creates an empty watch-only wallet; the second imports the receive and change descriptors (1,000 addresses each).
In the Bitcoin Core app, use Window → Console and drop the bitcoin-cli prefix; paste the file's contents in place of "$(cat …)". Afterwards, check that getnewaddress returns the first receive address shown above.
SafeKeep Cold Storage Backup
Output Descriptor
Final Seed Word (Checksum)
---
Master Fingerprint
--------
Passphrase Applied
Passphrase Fingerprint:
Output Descriptor
Output Descriptor Payload
First Receive Addresses
SeedQRCode
Seed QR Backup
Encode your seed phrase as a SeedQR code for printing on paper. Verify hand-drawn or engraved copies by scanning them for accuracy.
Smallest grid to draw (21×21 for 12 words, 25×25 for 24). Ordinary phone QR apps can’t read it, which keeps a casual scan from revealing your seed.
Opens in more wallets, including phone wallets like BlueWallet, but needs a bigger grid (25×25 for 12 words, 29×29 for 24). Any phone camera app shows its digits, and those digits are your seed.
Which wallets can scan this?
Both formats: SafeKeepVault, SeedSigner, Blockstream Jade, Krux, Foundation Passport, Sparrow.
Standard only: BlueWallet and most phone wallets. They report a Compact SeedQR as invalid.
Sparrow: scan it from File › New Wallet › Keystore tab › Scan… (next to the xpub field). Sparrow makes a watch-only keystore from it. Scanning from anywhere else in Sparrow shows an error.
Scan a hand-drawn or printed SeedQR with your camera to verify it matches the code you just generated.
Generate a SeedQR in the Create tab first, then come back to verify.
EntropyGenerator
Generate secure cryptographic randomness
Build your own entropy. Mix physical dice, playing cards, mouse movement and camera noise to create a private key.
Instantly creates a seed from your device's secure random number generator (CSPRNG). Recommended for most users.
Advanced: Provide Manual Physical Entropy
Your dice, cards, mouse and camera input is hashed and mixed with the device's random number generator. The seed is safe if either is good, but it can't be reproduced on another device.
Dice only, nothing else mixed in. The seed is the SHA-256 of your rolls, the same method SeedSigner and COLDCARD use, so you can check it on one of them. Roll exactly 50 times. Press Backspace to undo a typo.
SeedSigner: Tools → New seed → Dice rolls, then pick the same word count.
COLDCARD: New Seed Words → Advanced / Tools → Dice Rolls (wording varies by model and firmware).
Enter the same rolls in the same order. If the words don't match exactly, don't use this seed. The security depends entirely on your dice: use a fair die, and never let anyone see or record the rolls.
Your Entropy0%
0 / 128 bits from you
Counts only randomness you add. The device's random number generator is always mixed in as well.
Manual Dice
Roll physical dice and press 1-6. Each roll adds ~2.58 bits.
Backspace removes the last roll.
0 rolls
Playing Cards
Shuffle a 52-card deck thoroughly (at least 7 riffle shuffles), then enter the cards from the top: rank, then suit. A full deck adds ~225 bits.
Ranks A 2–9 T/0 J Q K · suits S H D C · Backspace undoes
0 of 52 cards from this deck
Mouse Wiggle
Move your cursor inside the zone. Each sample counts as 0.5 bits, since hand movement is partly predictable.
Move cursor here
0 samples captured
Video Noise
Captures sensor noise (the lowest bit of each pixel's color). A frame counts as 4 bits only if its noise changed since the last frame.
Collect enough entropy to enable the forge button.
Generated Entropy Result
Hybrid Entropy Applied
Raw Hex
Raw Binary
BIP-39 Words
CourierTool
optical data transfer via QR code
Transfer text and files between air-gapped devices using animated QR codes. Works with the Courier Tool found on safekeepbitcoin.com
500 bytes
7 FPS
QR updates live as you type. Sensitive data is masked by default.
Point your camera at a transmitting device. Animated file transfers and static text QRs are detected automatically.
Chunks: 0 / 0File: Scanning...
Transfer Complete
File reassembled from QR chunks. Review and save.
Original File:
EncryptedNotes
Vault Notes
Store plaintext notes inside the encrypted vault. No secondary passwords needed — the full-disk encryption protects everything. Keep recovery instructions, multisig coordination details, or configuration notes.
Recoverable withThis USB only
Temporary Session Active
Encrypted Notes is running in RAM only. Notes cannot be saved to the encrypted vault. Use the editor as a temporary scratchpad.
Archive
No saved notes
EncryptedBackup
Encrypted Vault Backup
Export selected vault contents as an AES-256 encrypted archive to the transfer drive. The native 7z utility encrypts both file data and filenames, creating a sealed backup that can only be opened with the correct password.
Recoverable withThis USB, or any standard 7-Zip extraction tool
Select Items to Export
CRITICAL: Exporting your seed creates a digital hot-wallet risk.
A seed backup on a transfer drive can be stolen, copied, or intercepted. This negates the air-gap security of your vault. Only proceed if you understand the risk and have a specific reason to export the seed AND you are using a strong password.
Recommendation: Use your primary SafeKeep Vault boot password to prevent password fatigue.
Passwords do not match.
Phase 1: Unlock Archive
Scanning transfer drive...
Selected:
Phase 2: Archive Manifest
Phase 3: Commit to Vault
WalletRecord
Wallet Record Builder
Generate a clean one-page wallet record suitable for printing as a PDF. Add the wallet's output descriptor — from the Output Descriptor tool or any wallet app — and the wallet type, keys and first address are read from it. You add the plain-language parts: what the wallet is for, which seed word set is which, and any passphrases. The record includes a QR code of the descriptor for import into any descriptor-aware Bitcoin wallet software.
1 · Add the wallet
Use the wallet you just built in the Output Descriptor tool, or paste or scan the output descriptor exported by any wallet app (Sparrow, Nunchuk, Coldcard…). The wallet type, script, keys and first address are read from it.
No descriptor? Enter the wallet details by hand
of
2 · Describe it
3 · Notes and print
0 / 200
Preview
Add the wallet above and the record appears here.
SeedManagement
Key Management & Derivation
Derive extended public keys, define derivation paths, and export key material for watch-only wallet setup. Third party wallet manufacturers support various key formats.
Return to the Dashboard and generate or restore a seed first.
Master Seed--------
Final Seed Word (Checksum)
---
A passphrase creates a completely separate wallet. Leave blank for the default wallet.
Master Seed--------
Passphrase Wallet--------
m/84'/0'/0'
Calculating...
Tip: drag the bottom-right corner of the QR to resize it for hard-to-scan cameras.
Idx
Receiving Address
SafeKeep Cold Storage Backup
SafeKeep Cold Storage Backup
Master Key Fingerprint: --------
Final Seed Word (Checksum)
This is only the last word of your recovery phrase, used to verify the seed you wrote down by hand. The full seed is never printed.
BIP-39 Passphrase (25th word)
Extended Public Key (watch-only)
Derivation path:
Extended Public Key (zpub)
First Receive Addresses
MessageSigner
BIP-322 message signing tool
Sign messages with your Bitcoin private key to prove ownership of an address. Generate verifiable signatures that others can check without exposing your private key or broadcasting a transaction.
Sign a Message
Verify a Signature
ShamirBackup
SLIP-39 Shamir Backup
Split your master seed into threshold shares using Shamir's Secret Sharing. You can recover your master seed phase with fewer than all shares — e.g., any 2-of-3 or 3-of-5. Each share alone reveals nothing about the original seed.
Recoverable withSafeKeepVault’s Shamir Recovery tool. These shares encode your BIP-39 seed — restoring them directly on a Trezor or other SLIP-39 wallet opens a different, empty wallet.
No master seed loaded. Return to the Dashboard and load a seed first.
Recovery Threshold
Choose how many shares are needed to recover the seed. The remaining shares serve as redundant backups.
of
Any 2 of 3 shares will recover your seed
▼ Advanced: Share Encryption Passphrase
⚠ PERMANENT LOSS WARNING
If you set a SLIP-39 passphrase and forget it, your shares become permanently unrecoverable — even if you have all shares. This passphrase is separate from your BIP-39 wallet passphrase. Leave blank if unsure.
Important: These are SLIP-39 shares — they use a different wordlist than BIP-39. Store each share in a separate secure location. Any 2 of 3 shares will recover your seed.
Do not exit this tool until you have verified your physical backup. A single typo in any share will lock you out permanently.
Backup Verification — Dry Run
To prove your backup is accurate, manually type any 2 of your 3 shares exactly as you wrote them down.
TransferHub
Transfer Drive File Manager
Browse and manage files on the Transfer Drive. Mount the exFAT partition to view, rename, or delete backup archives, signed transactions, and export files. Transfer partition is mountable when USB drive is used with another computer.
No Transfer Drive mounted. Return to the Dashboard and click
Mount Transfer Drive, then come back here to browse files.
TRANSFER://
FILENAME
SIZE
MODIFIED
ACTIONS
No files found on the Transfer Drive.
2FABackup
Authenticator Vault
Scan your authenticator QR codes to back up TOTP secrets inside the encrypted vault. Supports standard otpauth:// URIs and Google Authenticator's otpauth-migration:// batch export. Captured secrets are shown for visual verification before you save them.
Recoverable withThis USB only
Scan
Idle — camera off.
Captured Accounts
vault: empty
Type
Issuer
Account
Secret (base32)
Restore
No accounts captured yet.
A solid dot marks accounts not yet committed to the encrypted vault; a check marks saved ones. Secrets are shown in RFC 4648 base32. Use Show QR to re-import an account onto a new device.
Account
Scan with an authenticator app to restore this account. The secret leaves the vault as a QR only while this dialog is open.
Raw Scanned Payloads
⚠ Factory Reset
Factory reset will permanently destroy this vault. Before continuing, you must prove you have your backup.
Type the exact word at each position from your written-down recovery seed. Indices are randomized every time this dialog opens.
Backup verified. The vault will not be erased until the cooldown completes and you type the destruction word.
Cooldown
30
seconds remaining — you can still cancel
Cooldown complete. Type DESTROY (case-sensitive) to permanently shred the vault:
⚠ Leave without verifying?
You have not verified your Seed XOR shards. A single typo in your physical backup will result in permanent loss of funds. Are you sure you want to leave without verifying?
Vault Locked
Session cleared from memory. Choose how to proceed.
Locking Vault…
Evicting the encryption keys from memory and tearing down the session. The native unlock prompt will appear in a moment — re-enter your vault passphrase there to start a fresh, secure session.
Unlock Master Vault
Enter the encrypted drive password to decrypt the master seed from disk.
Temporary Seed
This seed lives in RAM only and is firewalled from the master vault. No data will be saved to disk.
SafeKeepVault
Power Options
All session data in RAM will be destroyed. Choose how to end the session.