beizeiten · Guides

Emergency password access: secure and without the cloud

Updated on 20 July 2026

Setting up emergency access to your passwords is easier than it sounds. The most practical solution is a short list of your master logins: your phone PIN, your main email account, the master password of your password manager, and your 2FA recovery codes. You keep this list on paper in a safe place, or as an encrypted file on your own device, not in the cloud. One trusted person needs to know where the list is and how to open it. That way your loved ones can reach everything that matters in an emergency, without you having to maintain hundreds of individual passwords. Here we compare the three common approaches honestly, with their strengths and weaknesses.

Why scattered passwords become a problem in an emergency

After an accident, a serious illness, or a death, your family needs access to your digital life: bills in your email inbox, subscriptions to cancel, insurers to contact, photos to save. Without login credentials, the only path left runs through each provider. That means writing to every service individually, submitting a death certificate, and sometimes waiting for the certificate of inheritance. It takes weeks to months, and some data is gone by then.

Switzerland has no dedicated law on digital estates. The general inheritance rules of the Swiss Civil Code (ZGB) apply. Your devices and the data on them pass to your heirs, but without the PIN a locked phone is of little use to them. To learn what legally happens to accounts and data, read our guide on the digital estate in Switzerland.

Three approaches compared

There are three common ways to set up emergency access to your passwords. None of them is perfect. What matters is that you know the weaknesses and choose deliberately.

1. A paper list in a safe

The classic: a handwritten or printed list, kept in a safe at home or with a trusted person. The advantage is obvious. Paper cannot be hacked, and anyone can understand it without instructions. The weaknesses: the list goes stale quickly, because hardly anyone walks to the safe after every password change. Whoever finds the list immediately has everything. And a bank safe deposit box is the wrong choice: after a death, relatives often only get in once they have the certificate of inheritance, which is exactly when they would have needed the access.

2. Password manager emergency access

Several services offer built-in inheritance features. Bitwarden has emergency access: a trusted person requests access to your vault, and after a waiting period during which you can object, it is granted. Apple offers a Legacy Contact for your Apple account, Google the Inactive Account Manager. Note: Apple's Legacy Contact grants access to iCloud data such as photos and mail, but not to passwords in iCloud Keychain. The big advantage of these features: the data is always current, because you use the password manager anyway and every password change lands there directly. The downsides: you depend on a cloud provider. Your trusted person sometimes needs their own account with the same service, some features cost money, and the provider can change the feature at any time.

3. An encrypted local file

You store your credentials in a strongly encrypted file, for example with AES-256, on your computer or a USB stick. No server sees the data, you can update the file at any time, and you can keep copies in several places. The catch: the password to the file has to be stored separately, for example on paper with your trusted person. Otherwise your family faces the same locked door. It also takes some basic technical confidence.

MethodSecurityFreshnessBarrier for relatives
Paper list in a safeGood, as long as the location stays secretGoes stale quicklyLow, readable right away
Password manager emergency accessGood, but depends on the cloudAlways currentMedium, own account sometimes needed
Encrypted local fileVery good, no cloudGood, if you maintain itMedium, file password needed

Mistakes many people make

Document your master logins instead of every password

The most important principle: you do not need to store a hundred passwords, just four to six keys. Whoever holds them can reach almost everything, because most accounts can be reset through your main email address.

  1. Device codes: The PINs for your phone and computer. A locked phone is the most common roadblock today.
  2. Main email account: The master key for password resets at almost every service.
  3. Password manager master password: It opens the entire vault with all your remaining logins.
  4. 2FA recovery codes: Without them, the login fails even with the right password. More on this in a moment.
  5. Legacy features: Set up a Legacy Contact (Apple, without access to stored passwords) or the Inactive Account Manager (Google), and note that you have done so.

E-banking deliberately does not belong on the list. Banks freeze accounts after a death anyway, and heirs gain access through the official route. Instead, only note which banks you are a customer of.

Do not forget your 2FA recovery codes

Two-factor authentication protects your accounts, but in an emergency it becomes a trap. Even with the right password, the login fails if the second factor sits on a locked or broken phone. Almost every service shows one-time recovery codes when you set up 2FA. Download or print them and keep them with your emergency list. Also check whether your authenticator app has a backup. Without these codes, the only option left is often the provider's lengthy support process, with an uncertain outcome.

How your list stays current and findable

An emergency list is not a one-off project. Set yourself a fixed date once a year, such as your birthday or the end of the year, and check: are the device codes still correct? Does the master password still work? Are the recovery codes in the documented place? Also tell one or two trusted people where the documents are and how to get the key. To see what belongs in your emergency documents besides passwords, use the emergency binder checklist.

If you want a structured way to do this: the digital emergency binder beizeiten has a dedicated "Digital life" section for it. There you record where your master logins are, which legacy features you have set up, and how your loved ones should proceed. All entries stay local in your device's browser, exports are encrypted with AES-256, and there is no account and no cloud. The yearly update reminder as a calendar file helps you keep the details fresh. beizeiten is not a legal product and does not replace notarial advice; it organizes and documents.

Digital access is only one part of getting prepared. To learn how to settle accounts, profiles, and data legally, read our guide on the digital estate in Switzerland.

Quick questions

Do passwords belong in a will?

No. A will is only opened after death, and that often takes weeks. All heirs also get to see its contents. At most, add a note to your will saying where your emergency documents are.

Should I store my e-banking password?

That is unnecessary and risky. Banks freeze accounts after a death anyway, and heirs gain access through the certificate of inheritance. Instead, only document which banks hold your accounts and custody accounts.

How many people should know how to get access?

One or two trusted people are enough. Every additional person increases the risk of misuse or a leak. Choose someone who can actually act in an emergency, such as your partner or an adult child.

What do I do when I switch password managers?

Update your emergency documents right away: the new master password and the new location of the recovery codes. Also set up emergency access again in the new service if you use it. Otherwise your list leads your family into a dead end.