Devices & restore encryption
Signing in is separate from reading family care data. Each phone or computer needs encryption access. You can revoke devices you no longer trust, remove access from this device, and unlock again with a recovery code or an admin grant.
See and revoke devices
- Open Settings.
- In Security (web) or the devices / encryption section (Android), review the device list.
- Tap Remove on a phone or computer you no longer use (for example a lost laptop).
That device stays signed in to the Google/Microsoft account until you sign out there, but it can no longer decrypt family care data until access is granted again.
Remove encryption from this device
- Open Settings → Security.
- Tap Remove encryption from this device.
- Confirm. You remain signed in, but this device cannot open care data until it is unlocked again.
Approve a new device
- On the new phone or computer, sign in and open the family. Carakin requests encryption access.
- On an already unlocked device, open Today (or Settings → Security / People → Users).
- Under encryption access requests, tap Grant.
After grant, the new device can decrypt the same family vault.
Restore with a recovery code
Use this when you still have the recovery code saved outside Carakin, but no other unlocked device can approve you.
- On web: Settings → Security → enter the code → Restore with recovery code.
- On Android: Settings → Restore encryption access (or the restore prompt on Today / Home when the family is locked), then enter the code.
- If a wrapped key is already on the account but missing locally, Android may also offer Restore encrypted key before you need the phrase.
Create or rotate a recovery code from Settings while a device is unlocked. Details and why this matters for solo admins: Security & recovery.
More guides: All guides | Security & recovery | Get started