Vaultly ← Back to site

What is a decoy vault?

Last updated 2026-08-05

Definition. A decoy vault is a second passcode in a vault app that opens a completely separate set of contents. Typing the real passcode opens the real vault; typing the decoy passcode opens a different one. Nothing on screen indicates which is which, or that a second vault exists at all.

It is sometimes called a duress passcode, a fake vault or plausible deniability mode. The idea comes from full-disk encryption tools, where a hidden volume can be opened with a different key.

The problem it solves

Encryption defends against someone who does not have your key. It does nothing at all against someone standing in front of you insisting that you unlock the app - a partner, a border official, a thief who saw you type the code. Cryptographers call this the rubber-hose problem: the maths is fine, the human is the weak point.

Refusing to unlock is not a neutral act. It confirms there is something to hide, which is frequently the exact thing you were trying to avoid confirming.

A decoy vault changes the shape of the situation. You unlock, fully and cooperatively. What opens is a real vault with real contents - just not the ones that matter.

What makes a decoy convincing

What a decoy vault does not do

This is where most descriptions stop, and it is the part that matters most.

Decoy vault compared with related ideas

MechanismWhat happensBest against
Decoy vaultA second passcode opens different contentsBeing pressured to unlock
Duress wipeA second passcode erases everythingNothing, usually - the loss is obvious and irreversible
Disguised app iconApp looks like a calculator or notes appThe app being noticed at all
Break-in alertPhotographs whoever enters a wrong passcodeFinding out someone tried
Hidden albumPhoto moved out of the main library viewCasual over-the-shoulder browsing

How Vaultly implements it

In Vaultly, the decoy is a separate vault with its own encryption key, its own albums and its own contents. It is opened by entering its passcode on the same lock screen - the prompt is identical either way, and the Switch vault control in Settings is worded and shown identically whether or not a decoy exists, so its presence in the interface proves nothing.

Biometric unlock only ever opens the real vault, so Face ID cannot accidentally reveal it. The two vaults share no keys: the decoy's passcode cannot decrypt a single file from the real one.

Related reading: hidden album vs photo vault and how to hide photos on iPhone.

Questions

Is a decoy vault the same as a duress code?

They are related but different. A duress code typically triggers an action such as wiping data or sending an alert. A decoy vault simply opens different contents, which is usually safer, because a visible wipe tells the other person exactly what happened.

Can someone tell that a decoy vault exists?

Not from the interface, if the app is designed properly - the unlock prompt and settings look identical either way. Someone performing forensic analysis of the device storage can see that a second encrypted store exists, though they cannot read it.

What should I put in a decoy vault?

Genuinely private but harmless material: a few personal photos, an old document scan, a receipt. An empty or obviously staged decoy defeats the purpose, because the whole point is that it looks like the real thing.

Does a decoy vault protect me legally?

No, and it should not be relied on that way. In several jurisdictions, failing to disclose an encrypted volume when compelled by a court is a separate offence. A decoy vault is a defence against informal coercion, not against a legal order.