Important - Before Your Session
Read this before you log into anything that matters
VanishingPoint moves your session to a workspace your device cannot reach.
That protection has edges. Most are decisions you make.
Three rules carry most of your safety.
Never type a password, PIN, or seed phrase on your own keyboard. Enter them on the Invisible Encrypted Keyboard.
Keep your recovery code somewhere physical, away from your devices. If you lose your phone, it’s one of the two factors you’ll need to recover your account, and no one can recover the code for you.
Reset your workspace when you finish anything sensitive, or after anything unknown came in.
The sections below are the detail behind these.
iPhone: Turn Private Browsing OFF (Mandatory: skip this and your next login will fail)
Safari Private Browsing does less than most people think. It does not hide your IP address, stop websites tracking you, or hide anything from your network or internet provider. What it does is drop the session cookies and stored data your browser normally reuses, which makes everyday browsing awkward.
VanishingPoint uses your browser, and Safari Private Browsing breaks this, so your next login fails. Turn it off, or use another browser.
Want real anonymity from website tracking? A VanishingPoint Temporary Workspace gives you a clean session every time.
1
Only you can open your workspace
Not by us, not by an attacker, not by a court order.
Your workspace is protected with envelope encryption, the standard practice in cloud security. Your data and its key are never in the same place. Steal the data and you have ciphertext. Steal the key and you find it double-encoded and encrypted with three secrets, held apart, that never come together. Only you, initiating the handshake with your phone, can decrypt the key that unlocks the data within your private workspace.
The full architecture, and why it holds: see Who Holds the Key.
2
Two workspaces
Every session builds a new desktop, in seconds. What you carry into it is your choice.
- Your Workspace: Settings, favorites, history and plugins restored into it each time, held encrypted between sessions. It opens where you last left off. A Google account left signed in is still signed in when you return. Ticking Reset before you sign in returns your workspace to factory default: settings, favorites, history, plugins, everything. You can’t undo this once done.
- Temporary Workspace: A burn machine, selected before you sign in. Nothing carried in. Nothing saved out. Use it to open a hazardous link or an unexpected attachment, or for anything you want no record of.
It is good security hygiene to reset whenever a piece of work is finished, and after any session where something unknown came in: a link you were sent, an attachment you did not expect, a plugin you tried once. You are back to a pristine machine, with nothing left over from previous sessions to watch this one. Treat Your Workspace as convenience, not custody. A future release changes that, with encrypted data file storage secured by Proof-of-Presence.
3
A desktop needs a big screen
VanishingPoint is a full desktop that runs alongside your own machine: files in, downloads and printing out, your clipboard pasting into the session. It needs a big screen to work on: a laptop, desktop, or even a smart TV, where your phone becomes the keyboard it never had.
This is why it is not built for a phone or tablet. Your phone has to stay separate, so it can host the Invisible Encrypted Keyboard while your credentials are entered on a device the workspace never touches.
Your phone has another job here, and it is the more important one.
4
No password, two devices, one tap
Your workspace holds your settings, your history and your logged-in sessions. The strength of your login is what everything else rests on.
Scan the QR code with your phone, then tap to approve.
VanishingPoint uses MasterKey’s patented technology for invisible passwordless multi-factor authentication. No software. No setup. Both factors in one step, not two.
At inception, your recovery code is captured in a decentralised protocol that sidesteps your local devices, laptop and phone, entirely. The attack surface is split across separate devices and factors, so compromising one is not enough. Your phone is the second factor, confirmed by the tap. A third factor, Passkeys as Proof-of-Presence, is planned for a future release.
Stolen credentials alone cannot get into your VanishingPoint account.
Anti-hijacking. The stream is end to end encrypted, session credentials are single use and scoped to your desktop, and the desktop runs in an isolated origin. A captured stream carries nothing that can be replayed. A stolen session cookie replayed on another device cannot hijack your session, because re-authentication is required from your phone.
5
Never type a credential on your own keyboard
This is the most important instruction on the page.
The remote machine accepts input from your laptop keyboard, and those keystrokes pass through the computer you should not trust. Fine for ordinary typing. Never for a password, a PIN, or a cryptographic seed phrase.
Scan the QR code and enter credentials through the Invisible Encrypted Keyboard on your phone. What you type is encoded by a secret only the remote workspace can decipher. No software, no setup. Infostealer malware on your phone captures only that encoded data, never your keystrokes or mouse coordinates. Your laptop is sidestepped completely.
There is a mousepad above the keyboard, and a Paste button that pastes from your phone’s clipboard into the remote desktop.
Check the “Key Feedback” toggle at the top of the keyboard is set to OFF before you enter anything that matters. When ON, each key is highlighted as you press it. This helps while you learn the layout, but a screen recorder on your phone could play this back.
6
Change your important passwords from inside VanishingPoint
Every password you have typed on your own keyboard has passed through a machine you cannot verify. Assume they are known.
Start with email. It is how every other account gets reset. Then your bank, your exchange, and your password manager.
Log into each account inside the workspace, change the password, and enter the new one on the Invisible Encrypted Keyboard. It never touches your local machine.
Install your password manager’s browser plugin in the workspace, one of the few worth trusting, and update it there as you go. Bitwarden, 1Password, LastPass and Dashlane all work.
7
Come back to every tab you left open
Set your browser to resume from your last session.
- Brave. Already set. Nothing to do.
- Firefox. Menu, Settings, General, then under Startup check Open previous windows and tabs.
- Chrome. Three dots, Settings, On startup, Continue where you left off.
You can also sign in to your browser account and turn on sync. Your bookmarks, plugins, saved logins and history fill the workspace. When ticking Reset returns your workspace to factory default, sync brings your browser straight back.
Signing in means typing your Google or Mozilla password inside the workspace. Enter it on the Invisible Encrypted Keyboard.
Brave has no sign-in. It joins a sync chain with a 24 word code. That code opens every saved password in the chain, so treat it like a seed phrase and enter it on the Invisible Encrypted Keyboard.
8
Every plugin can watch every tab, on your machine and ours
Browsers are built to let a plugin see every tab you have open. That is not a flaw in any one browser. It is how the technology was designed, and it is true on your own machine right now.
VanishingPoint currently gives you Chrome, Firefox and Brave, so the same rule applies inside your session. A plugin you install stays there and can read everything you do in that browser: your exchange, your bank, all of it.
We recommend not installing plugins at all. You have the freedom to do it. Only install what you trust, and know that a plugin which is safe today can change hands tomorrow.
A workspace that remembers you also accumulates baggage. Reset and you’re back to a pristine machine, carrying no plugin from the sessions before it. Sync will reinstall whatever is still in your browser account, so remove what you no longer trust there first, then reset.
9
One way clipboard
Two machines, one desk. Everything that passes between them moves in one direction, by design.
Copy something from your local machine and paste it into the workspace. A password from your local password manager, for example. This works from Chrome-based browsers. Firefox blocks it.
Your local machine cannot read the remote clipboard. A seed phrase or private key copied inside the workspace stays there, out of reach of infostealer malware reading the clipboard on your own machine.
If you need to bring text out, print to PDF, save it to a file and download it, or email it to yourself. None of these happen by accident, which is the point.
10
Drag files in, click files out
Drag a file from your computer onto the desktop window and it uploads. On PRO and ULTRA, the Files button in the toolbar downloads what you need back. Print anything and a PDF is handed back to your local desktop where you can save or print it.
11
Your bank or exchange never touches your device
Everything you open runs in the remote machine. Sites, session cookies, account pages and balances exist solely there, out of reach of malware on your device or your network.
Session cookies are how most account takeovers happen, and they defeat 2FA. Yours are never on your device to steal.
12
Malware only sees asterisks
Your device receives a stream of pixels over an encrypted connection, like a television receiving a signal from a station.
Infostealer malware cannot inject code into a pixel stream, but it can record the display.
Enter a password or a cryptographic phrase into a web form and asterisks appear. On a local machine that is a mask for the human sitting next to you. Software on that machine reads the field as clear text. Password managers store credentials encrypted, but then load the decrypted password into web forms. You see asterisks. Infostealers see the password.
The Invisible Encrypted Keyboard changes that. Type on your phone, and the infostealer sees the same asterisks you do, with nothing behind them.
You can’t hack something that doesn’t exist.
13
The Invisible Wallet
Reconstruct your cryptocurrency wallet inside a machine that is invisible from the internet. Hardware wallet security, online wallet convenience.
Use the desktop wallets in the menu, or install your own wallet as a browser plugin.
Enter your 12-24 word seed phrase on the Invisible Encrypted Keyboard, so it is never typed on your local device. Keyloggers, clipboard scrapers and infostealers have nothing to read.
Use a wallet that masks the seed phrase as you enter it. Not all do. Exodus displays every word, readable by anyone behind you and by a screen recorder. We include it because customers ask for it. We do not recommend it.
Hardware wallet support arrives in v2.1 on PRO and ULTRA, connecting through USB passthrough. Your device will talk to the wallet app in the remote machine directly. Ledger Live, Trezor Suite, Blockstream Green and BitBoxApp are supported. ULTRA will support air-gapped QR code wallets.
We give you a secure environment and keep it current and patched. The wallets are third-party software. We isolate them. We cannot vouch for their internals.
Good policy is to log out of your wallet and close it when you finish.
Stolen crypto is gone forever. No chargebacks, no insurance, no recovery. Never enter a seed phrase on your own keyboard. Use the Invisible Encrypted Keyboard.
14
If your network connection drops
Your screen freezes and a small message says the connection is lost. Most outages are brief and your browser may reconnect quickly.
Your disconnected session keeps running for a while: LITE 5 minutes, PRO 15 minutes, ULTRA 60 minutes. Reconnect inside that window and you have not lost a keystroke.
You log in and tap again to resume your current session. That is one of the steps preventing anyone else from resuming it.
Log out deliberately when you finish. Do not leave a session open and walk away.
15
Isolation protects the session, not the decision
VanishingPoint moves your session off your device. It does not remove your judgement.
Internet isolation cannot stop social engineering. What it does is add a step. Make it a rule to move into an isolated session before you transact. That deliberate step disrupts the reflexes social engineering relies on.
Confirm the site you are on is the one you meant to visit. Check every wallet address against a source you trust before you send. Treat an unexpected request the same way inside the workspace as you would outside it.
A transaction you approve is a transaction you approved.
16
Where the protection ends
VanishingPoint gives you a clean machine, built fresh, invisible from the internet, and gone when you leave. What happens inside it is yours.
Two things we cannot reach. What you carry in, and what was already broken before you arrived. A seed phrase generated with weak randomness was compromised at birth, so generate on an independently audited wallet where you supply your own entropy. A password stolen last year is stolen whether you type it here or anywhere else. Isolation removes the attack surface. It does not rewrite history, and it does not overrule your decisions.
Run through this before a session that matters:
- A file you download or print to your device has left the protected environment.
- Drag an infected file into the workspace and it can infect the workspace.
- A plugin you install can read everything you do in that browser.
- A Reset will not remove a plugin if sync reinstalls it.
- A credential typed on your laptop keyboard, or copied to your local clipboard, can be read by infostealer malware.
- Login credentials or a wallet already compromised before you started are still compromised.
- A lost recovery code cannot be recovered by anyone.
- Anything displayed on your screen can be recorded by malware on your device.
Features described as planned or on the roadmap are indicative, not commitments. They may change or not ship, and nothing here should be relied on as a promise of future functionality.