The credentials vault (Zugangsdaten-Tresor) is the encrypted home for every login your office relies on: portal accounts, API keys, PIN codes and secure notes. Instead of spreadsheets and sticky notes you get one central list with clear sharing rules, three confidentiality levels and a log of every access.
What the vault is
The credentials vault is a standard tool of the platform: it comes pre-installed on every plan and costs no credits (details: Cost and availability). You find it in your workspace at /tools/credentials. It has its own sidebar with every area: entries, folders, vault check, groups, personal entries, shared links, access log and trash.
Every secret is encrypted before it is stored. Search only covers title, URL, username and tags, never the secret itself. Uninstalling the tool never deletes your data.
What the vault can do
Encrypted entries
Passwords, API keys, PIN codes and secure notes in one list. Each secret is encrypted before saving, and a built-in generator creates a strong password on demand.
Three confidentiality levels
From standard to sensitive (revealing requires a reason) to hyper-sensitive: zero-knowledge encryption in your browser with a personal master password.
Team sharing
Grant access per member, per role or per group. Shares always grant read access, and the creator of an entry always stays in control of it.
External links
Time-limited share links for outside partners (1 hour up to 7 days), revocable at any time, with every access counted and logged.
Staff logins
Templates for services where each team member deposits their own login, with a progress indicator and optional escrow for the workspace owner.
Access log
Who opened, copied or shared which entry, and the reason they gave. Visible on the entry itself and as a page of its own. Secrets never appear there.
Vault check
Finds weak and reused passwords, expired credentials, entries created by people who have left, and entries only one person can reach.
Second factor of your portals
Store a service's second factor and the vault shows the confirmation code right next to the password. No more reaching for the phone.
Credentials on the property
Key-safe codes, WiFi and alarm systems can be attached to a property. They then also appear on the property page, where your colleague looks before a viewing anyway.
The three confidentiality levels
The vault's core concept: you decide per entry how strictly it is protected.
Getting started
Open the vault
Open the credentials vault in your workspace at
/tools/credentials. While the list is empty you will see the hint Noch keine Einträge. Lege deinen ersten Zugang an. (no entries yet, create your first login).Create your first entry
Click Neuer Eintrag (new entry). Give it a title (for example "ImmoScout24 office account"), pick the type and enter the secret. For the password type you must also fill in an email or a username.
Choose visibility and confidentiality
Decide whether the entry is Geteilt (Team) (shared with the team) or Persönlich (personal), and pick a confidentiality level. Rule of thumb: standard for team logins, personal only for accounts that are truly yours alone.
Save and share if needed
After saving, the entry appears in the list. Use Teilen (share) to grant read access to specific members, roles or groups.
All topics in detail
Managing entries
List and search, creating and editing entries, all field types, revealing with logging, deleting and CSV import.
Security
The three confidentiality levels in detail, the master password for zero-knowledge, vault 2FA and the team policies.
Sharing
Team shares (members, roles, groups), personal vs. shared entries and external share links with expiry and revocation.
Staff logins
Templates for services where everyone deposits their own login, including escrow and the progress indicator.
Audit and permissions
What gets logged, which webhook events exist and what each role may do in the vault.
Vault check and access log
What the check finds, how to read the access log, how the trash works and what to do when someone leaves.
Emergency access
Name a person you trust who can take over your personal credentials in an emergency, with a waiting period and the right to object.
Cost and availability
Why the vault costs no credits, what every plan includes and how storage is counted.
Questions and answers
Visibility, how entries are protected, automatic locking, moving over via CSV and offboarding.
Troubleshooting
Answers to the most common issues: forgotten master password, 2FA codes, invisible entries, import duplicates.
Frequently asked questions
Who sees what, how entries are protected, what happens when someone leaves the office and how to move over from another password manager: Questions and answers.