Passphrase Reset

Learn more about the Passphrase reset feature and how it works.

The passphrase is used to unlock your Affinidi Vault to access your data. The passphrase reset feature provides a secure method to recover your access if you forget your Affinidi Vault passphrase.

The passphrase reset method implements a cryptographic algorithm called Shamir’s Secret Sharing, which allows the secure distribution of private information (“secrets”) across different networks or devices. This keyless cryptographic technique keeps personal data like biometrics, cryptographic keys, and passphrases safe and secure.

The passphrase reset generates 3 PDF files (shares) from your current Affinidi Vault passphrase, each containing phrases. Each of these files does not expose the information about the “secret” unless the required number of these individual files (Affinidi Vault requires 2 of the 3 files) are combined to be able to reconstruct the secret and use it to recover the access to the Affinidi Vault.

How passphrase reset works

Using Shamir’s Secret Sharing algorithm, the Affinidi Vault passphrase reset provides the following flow.

Download the PDF Files

To reset the Affinidi Vault passphrase later, download the PDF files containing secret phrases from the Settings page. Enter your current passphrase, and after confirmation, the Affinidi Vault will generate the 3 PDF files based on your current passphrase.

GIFAffinidi Vault - Passphrase Reset Settings

You must securely distribute the files to your trusted person, devices, or location, which you can use later to recover access if you forget your passphrase to unlock the Affinidi Vault.

Best practices for keeping your files safe

Follow some of these tips on securely distributing and storing the recovery files:

  • Give one of the copies to someone you trust, like your family members or friends.

  • Store one of the copies on one of the trusted devices, either on a laptop or mobile device.

  • Store one of the copies in a secure storage service, like Google Drive, to have a digitally accessible copy.

  • Print one of the copies and keep it safe in a secure physical location with restricted access, such as a deposit box.

Never store the copies in a single location to reduce the risk of someone getting a copy of the recovery files and gaining access to your Affinidi Vault.

Recover Affinidi Vault access

If you forget your passphrase to unlock Affinidi Vault, click the Forgot Passphrase? link on the Affinidi Vault login page.

Affinidi Vault - Reset passphrase

Retrieve 2 of the 3 PDF files downloaded and securely stored previously and upload them into the Reset passphrase page of the Affinidi Vault. The Affinidi Vault will use the 2 PDF files containing the secret phrase to reconstruct the passphrase and unlock the Affinidi Vault.

After successfully validating the reconstructed passphrase and unlocking the Affinidi Vault, the Affinidi Vault will prompt you to set a new passphrase for enhanced security.