Early access — use test data only. Status

Owner and key-person continuity

Give the business a first-hour runbook if its key person cannot respond.

Prepare the system map, authority boundaries, vendor contacts and recovery instructions another responsible person may need—without sharing daily administrator credentials in advance.

Encrypted before upload · Email check-ins · A separate safety period · One intended recipient per delivery

The practical gap

Backups restore systems. A handoff explains who should act and in what order.

Small organisations often depend on one owner, founder or administrator who knows the registrar, billing account, cloud root, payroll process and vendor relationships. Normal access belongs in IAM, PAM and password-management systems. Conditional delivery is useful for the narrower case where an authorised responder needs context and recovery instructions after a sustained absence.

What the service actually does

A controlled handoff, with clear recovery boundaries.

A first-hour operating map

Name the systems to inspect, customers or staff to notify, external providers to contact and decisions that must wait for an authorised owner.

  • Primary and alternate incident contacts
  • Critical service and dependency inventory
  • Safe order of operations and explicit stop conditions

Break-glass recovery context

Document where approved emergency credentials or recovery factors are held. Prefer role accounts, hardware keys, PAM and provider recovery over a shared master password.

  • Cloud, registrar, email and billing recovery paths
  • Offline key and backup-code locations
  • Rotation and revocation steps after access

One accountable recipient per delivery

Assign a delivery to one intended person. Create separate deliveries when a co-founder, executor or technical responder should receive different material.

  • Compartmentalised information by responsibility
  • Optional neutral email verification during setup
  • A clear explanation of recipient limits

A delayed absence trigger

The 30-day minimum check-in interval makes ZeroLatch suitable for continuity planning, not urgent incident response. The safety period reduces release after a temporary lockout or missed email.

  • 30, 60, 90 or 180-day check-in options
  • 7, 14, 21 or 30-day safety period
  • Separate monitoring and paging remain essential

Important boundary: ZeroLatch is not a privileged-access manager, identity provider, backup platform, incident pager, monitoring service or source of corporate authority. A released runbook must still be used under approved business and legal procedures.

How it works

One deliberate delivery at a time.

  1. Step 1

    Find the single points

    List systems, decisions and relationships that currently depend on one person.

  2. Step 2

    Move normal access first

    Use role accounts, delegated administration, PAM and tested backups for daily continuity.

  3. Step 3

    Write the absence runbook

    Record the residual recovery path, authority map, contacts and rotation sequence.

  4. Step 4

    Tabletop the handoff

    Have the intended responder explain each step without touching production.

Good continuity content

  • Registrar, cloud, email and billing recovery maps
  • First-hour customer and staff communications
  • Named technical, legal and financial responders
  • Backup, hardware-key and recovery-code locations
  • Credential rotation and incident-recording steps

Keep in operational systems

  • Everyday passwords and standing administrator access
  • Real-time monitoring, paging and incident escalation
  • Production backups or disaster-recovery copies
  • Unapproved instructions to transfer money or ownership
  • A single secret that bypasses all organisational controls

Questions before you start

Frequently asked questions

Is ZeroLatch a business password manager?

No. A password manager supports normal credential use and sharing. ZeroLatch is for selected information that should remain on hold until a sustained absence passes the check-in and safety periods.

Can ZeroLatch replace PAM or IAM?

No. PAM and IAM manage identity, policy, privileged sessions and routine access. Conditional delivery may document a break-glass recovery path, but it should sit alongside those controls.

Is the 30-day minimum suitable for an outage?

No. Use monitoring, an on-call system and an incident response plan for minutes or hours. ZeroLatch is designed for longer-horizon absence and continuity scenarios.

Should a delivery contain the cloud root password?

Prefer delegated administrator roles, hardware keys, provider recovery and controlled break-glass mechanisms. If a secret must be included, minimise its scope, separate recovery factors and require rotation immediately after use.

Does release authorise the recipient to run the business?

No. Company documents, board or owner approvals, employment responsibilities, provider policies and applicable law determine authority. ZeroLatch only attempts to deliver the prepared information.

Prepare one useful handoff. Test it with harmless information.

Create a draft, review the recovery path, and activate only when the recipient, timing, and contents are right.

Create a test delivery