Master Vault Key: setup and recovery sheet
Encrypted backups to MigraSync Managed Cloud use a Master Vault Key. Without the same key at restore time, encrypted backups cannot be decrypted.
Where to set it
- Open MigraSync → WP Backup.
- In the wizard, open Master Vault Key.
- Generate Key, or type/paste a strong key you already store elsewhere.
- Click Update / Save Key.
- Download the Recovery Sheet when offered.
Store it safely
- Password manager (1Password, Bitwarden, KeePass, etc.)
- Offline Recovery Sheet printout in a safe place
- Never commit the key to git or paste it in public tickets
If you lose the key, encrypted cloud backups cannot be restored. Local unencrypted copies (if any) are a separate concern — treat the vault key as critical.
Updating the key
- A saved key stays active until you save a replacement.
- Changing the key does not rewrite old backups encrypted with the previous key — you still need the old key to restore those points.
- Prefer one stable key per site unless you have a clear reason to rotate.
Related

Related Articles
On this page