$ legacyapp / api-keys

Who will find your API keys?

An OpenAI account with credits, a bot in the background, a production key in .env. If you're gone tomorrow, nobody knows any of it exists. LegacyApp holds the map: what you have, where it lives, what to do with it. The keys stay with you.

Get LegacyApp A map to your keys, not a safe for them
a LegacyApp entry
OpenAI - organization account
key
1Password, "Company" vault (sk-••••••••)
worth
~$4,200 in credits + bot ~$900/mo
action
hand to Marta · contact: Tomek
AES-256 encrypted · on your device

// 01

The account expires with you

OpenAI, AWS and Google all say roughly the same thing in their terms: the account is non-transferable and expires with the user. There is no procedure for taking over an account after the owner's death.

If nobody close to you knows the account exists, nobody will claim it. The credits expire. The bot keeps billing until someone cancels the card.

OpenAI - account is non-transferable
AWS - no death-transfer procedure
Google - expires with the user

// 02

How it works

01

Keys stay where they belong

Keep them where they belong: in your password manager, an .env file or a hardware key.

02

Describe each service

In LegacyApp note: what it is, where the key lives, what it's worth and what to do with it - hand over, shut down, close the billing.

03

Choose who gets it

LegacyApp checks in with you from time to time. If you stop responding and your Trusted Friends confirm something happened, that person gets your notes.

// 03

What about your password manager?

Keep it. Some password managers can hand your vault to a trusted contact, and for passwords that works well.

The rest won't fit in there: what each account is worth, which bot keeps billing, what to shut down first, who to call for help. LegacyApp covers that part.

Password manager

Passwords and keys

Stores and hands over the secrets themselves. Great at exactly that.

passwords in your manager, the map in LegacyApp

LegacyApp

The map and context

What each thing is, what it's worth, what to do with it, and who to contact - the part a vault can't hold.

// 04

Why this is safe

LegacyApp holds none of your keys, so there is nothing to steal. Your keys don't need one more place to leak from.

The notes themselves are AES-256 encrypted and live on your phone and in your own cloud (Google Drive or iCloud). We keep nothing on our servers.

28.7M

secrets leaked to public GitHub in 2025. - GitGuardian

don't create one more copy of a live key

// 05

What to write down

The service and the account

e.g. the OpenAI account of org X.

Where the key lives

password manager, file, device. Never the key itself.

What it's worth

credits, balance, monthly revenue or cost.

What to do with it

hand over, shut down, export the data, close the billing.

A technical contact

in case your family isn't.

// 06

Where it goes in the app

AI accounts and keyed services
Digital Identity → Other Digital Services
A bot or project that earns
Assets → Business Interests
Step-by-step instructions for your family
Personal Notebook → Important Notes
A crypto wallet wired to an automation
Banks → Exchanges

Set it up once, and it's ready the day it's needed.

A free plan, encryption and your data on your phone. A quiet afternoon now saves your people a scramble later.