Myend holds some of the most sensitive information a person can put in writing — healthcare wishes, account credentials, a last will, private messages to the people you love. Security isn’t a feature we bolted on; it’s the reason the product can exist at all.
Here’s exactly how we protect your plan, in plain language — no jargon, no vague reassurances.
Your data is encrypted, and we can’t read it
Myend is end-to-end encrypted. Sensitive information — like the credentials, passwords, and account details you store in your Vault — is encrypted client-side with AES-256, a widely trusted encryption standard, before it ever leaves your device. That means Myend staff cannot read the contents of your plan. Not to browse it, not to “help,” not ever.
Your answers are also never used to train AI models. Whatever you tell Justine while building your plan stays your information — it doesn’t become training data for us or anyone else.
What’s in the Vault, and how it’s protected
The Vault is where you store the things your family will actually need to find: email account logins, banking credentials, social media access, crypto wallet details, phone unlock codes, Wi-Fi passwords, safe combinations, and two-factor-authentication recovery codes. The Free plan includes a 10-document Vault so you can see how it works before upgrading.
For every item you store, you also assign what should happen to it — delete it, memorialize it, or give a trusted person full access — and who should receive it. That instruction travels with the item itself, so your Legacy Contacts know exactly what to do without guessing.
Nobody gets access while you’re alive — and access after you’re gone is deliberately hard to trigger
This is the part people worry about most, so it’s worth explaining carefully. A Legacy Contact — the trusted person you name to carry out your wishes — cannot see or change anything in your plan while you’re alive. Full stop. They can’t browse your Vault, read your messages, or view your directives out of curiosity, and they can’t alter what you’ve written.
Access only opens after three things happen together:
- Your Proof of Life check-ins go unanswered. You set the schedule; if you stop responding, Myend does not assume the worst immediately — it escalates gradually, starting with gentle reminders to you before anyone else is notified.
- Your named Legacy Contact receives an Access Key, sent directly to them.
- They complete email verification to prove they are who they say they are.
All three have to line up — the lapsed check-ins, the Access Key, and the verified email — before a Legacy Contact can see anything. Nothing is released by accident, and nothing is released early.
Even once access is granted, it’s limited to what you’ve chosen to share: your finalized directives, your goodbye messages, your contact list, and any Vault items you’ve designated for them. A Legacy Contact is not the same as a legal executor or financial power of attorney, though it’s fine for one person to hold more than one of those roles.
Your plan belongs to you
You can print, export, or delete anything in your plan at any time. If you ever decide to stop using Myend, everything you created goes with you — nothing is held hostage on our servers. And if you let a paid plan’s annual renewal lapse, you don’t lose what you built: everything stays yours, viewable and exportable, forever. The only thing that pauses is the ongoing service — Proof of Life monitoring, will updates, and a fresh Justine allowance for the year.
Why we built it this way
An end-of-life plan only works if the people writing it trust it completely. That means encryption strong enough that even we can’t peek, a release process that requires deliberate, verified steps rather than a single point of failure, and a policy that your information is never repurposed — not for AI training, not for anything else. Security isn’t a checkbox here; it’s the entire premise of asking someone to put their most private wishes into a plan in the first place.