Skip to main content

Key Share Distribution

MPCVault uses a 3-of-3 multi-party computation (MPC) setup:
ShareHolderLocationTEE
Share 1YouYour device-
Share 2MPCVaultGoogle CloudAMD SEV
Share 3MPCVaultMicrosoft AzureIntel SGX
All three shares are required for signing. No single party ever has access to the complete private key. Key Shares

Multi-Cloud Infrastructure

MPCVault operates across multiple cloud providers, each using a different Trusted Execution Environment (TEE):
CloudTEE TechnologyDescription
Google CloudAMD SEVSecure Encrypted Virtualization
Microsoft AzureIntel SGXSoftware Guard Extensions
This orthogonal platform design reduces the risk of compromise - a vulnerability in one TEE technology doesn’t affect the other. Architecture

No Counterparty Risk

Unlike centralized custody providers, MPCVault never holds all your key shares. This eliminates counterparty risk - you always know where your assets are and maintain control over them. You can:
  • Request your key shares from MPCVault at any time
  • Designate a Trust to hold encrypted backups for recovery independent of MPCVault

Recovery Options

OptionDescription
Key Share ExportRequest all three shares for full wallet recovery
Trust BackupStore encrypted backup with a third-party trust
Standard RecoveryUse your device and MPCVault’s shares together