Preservation first, not destruction
Most of what gets written about coercion-resistant vaults assumes the goal is making files disappear. Here it usually isn't. A record that gets wiped under pressure has failed at the only job it had, which was to still exist when it reached someone able to act on it.
So the two features that matter most in this situation are the quiet ones. Encrypted backup to your own Dropbox means a copy exists somewhere other than the device in your pocket, encrypted before it leaves, and unreadable to Dropbox or anyone else without your key. The 12-word recovery phrase means access doesn't depend on that device surviving either.
Why the Duress Vault is the wrong default here
Vaultine has a Duress Vault: a code that opens an empty vault, wipes your real vaults, and then becomes your main vault so nothing suggests the others existed. It is a genuinely strong tool, and for some people it is exactly right.
For preserving documentation, it usually isn't. Destroying the record under pressure is the outcome you are trying to avoid, not the one to automate. The Decoy Vault is the fitting feature: a second code opens a separate vault stocked with files you chose, so an ordinary device check produces an ordinary result while the real vault stays closed and intact.
Both exist, both are configured by you, and it is worth deciding deliberately which one you actually want set up rather than enabling the more dramatic option by default.
Nothing to subpoena on our end
Vaultine has no account system, no email sign-up, and no server holding your files or your encryption key. The key is derived from your code on the device and never leaves it. That's a factual description of the architecture, and its practical consequence is that there is no vendor-side copy of anything for anyone to request.
The one connection worth stating plainly: the app registers the device once on first install for licensing and install metrics. That check-in carries no account, no email, and no file contents, but "the app never connects to anything" would be an overclaim, so we don't make it.
What this does not do
Software can encrypt a file. It cannot tell you whether disclosing something is lawful where you are, whether an internal channel is safe to use, or what protections you may or may not have. Those are questions for a lawyer or an established disclosure body, and they are better asked before acting than afterwards. Vaultine is a tool for keeping a record intact and unreadable to others in the meantime. That's the whole of the claim.



