Feature

Encrypted backup

Device-loss insurance, without handing anyone anything readable.

A vault that exists only on one phone is one dropped phone away from gone. Encrypted backup copies it to a cloud account you already control — your private iCloud database on iPhone and iPad, or the hidden application folder of your Google Drive on Android.

What actually uploads

The same ciphertext that sits on your device. Files, thumbnails, filenames and metadata are already sealed with AES-256-GCM before they are written to disk, and the backup copies those sealed bytes as they are. No vault key and no plaintext ever leaves the device — which is also why a backup can run while the app is locked.

Apple and Google therefore hold data they have no key for. We are not a party to it at all: the transfer goes from your device to your cloud account, and there is no Weave Vault account for it to be attached to.

It is off until you turn it on

Nothing is uploaded by default. Separately, the vault's storage is excluded from your phone's ordinary device backup, so a routine iCloud or Finder backup of the phone never contains it either. The two are unrelated: one is the automatic backup we opt out of, the other is a deliberate copy you switch on.

Getting it back

On a new phone, install the app and choose Restore from a backup on the first screen. Sign in to the same cloud account, let it download, then draw the pattern for the vault you want — or enter its recovery phrase. Restoring never requires a subscription.

What it does not do

A backup is only as current as its last completed sync, so replacing a pattern or a recovery phrase is worth doing while you can watch the status reach Backed up — otherwise a restore will still expect the old one. And if you lose your pattern and your phrase, the backup cannot help: it is the same encrypted data, and the keys were never in it.

Available on iPhone, iPad and Android.