Guardians are a key part of your account security on Bron. They allow you to safely recover signing capability if a trusted device is lost, stolen, or compromised.
Guardians are one of two recovery methods on Bron — the other is FaceScan recovery, biometric face verification powered by iProov. You can set up both and choose whichever suits you when recovery is needed.
What Are Guardians?
Guardians are trusted people—friends, family members, or colleagues—whom you invite to help you recover access to your account. Guardians do not have access to your account, assets, or any sensitive information. They only play a role in the social recovery process.
Tip: Choose Guardians who are familiar with digital security and crypto. You should also be able to reach them directly via phone, messenger, or in person—this is important to confirm that recovery requests really come from you.
How Does the Guardian System Work?
1. Invite Guardians
Choose at least two people and send them an invite via email.
Each Guardian must activate their Bron login by registering.
An invite is valid for 14 days. If it expires before that person accepts, send a new one from Settings → Users.
2. Activation and Security Delay
Once activated, each Guardian is subject to a 30-day security delay. The 30 days start the moment that person accepts your invite and their Guardian login is created — not when you send the invite.
Each Guardian has their own countdown, so two people who accept on different days become available on different dates.
During this delay, recovery via that Guardian is disabled.
3. Assigning Roles
You can assign one of two types of roles to a Guardian:
Guardian-only role: the Guardian will not have access to your workspace, balances, accounts, or transactions.
Workspace user: you can also assign an existing workspace user (Owner, Member, or Viewer) as a Guardian.
4. Day-to-Day
In normal use, Guardians don’t need to take any action—they simply need to keep their Bron passkey secure.
What a Guardian Account Is
To accept the invite, and to see a recovery code later, a Guardian needs their own Bron login — an email address and a passkey, created from the invitation link. No app install and no crypto knowledge are required; any mobile browser works.
A guardian-only login is free: no subscription, no $BRON tokens, no workspace of its own and no assets. It opens a single Requests screen — no balances, no settings, no transactions.
How to See the Workspaces Where You Are a Guardian
If you are a Guardian, you can see all workspaces where you have this role directly in the Bron app:
Log in to Bron with the email address that received the Guardian invite.
Click your workspace name in the top-left corner to open the workspace list.
The Guardian workspaces section of the list shows every workspace where you are a Guardian.
Selecting a guardian workspace opens the Requests tab, where you will see any active recovery requests from that workspace.
How Recovery Works
If you lose your signing capability:
Step 1: Start Recovery
You initiate the Guardian recovery process from the Bron app.
Step 2: Guardians Are Notified
Each Guardian receives an email notification that you’ve started a recovery.
Step 3: Guardians Log In
Each Guardian logs into their Bron account and sees a recovery code in their interface.
⚠️ Bron does not send recovery codes via email—codes are only visible after login.
❗️Before sharing the code with you, Guardians should verify that it was really you who initiated the recovery.
Step 4: You Enter the Codes
Once both Guardians send you their codes, you enter them into the recovery interface in Bron.
Step 5: Security Delay Starts
A 48-hour recovery delay is activated to protect your account.
Step 6: Finalise Recovery
After the delay, you can proceed to restore your ability to sign on a new trusted device.
⚠️ A recovery request cannot expire while the security delay is running: it stays valid for the whole delay plus 15 days. Enter the codes and create your new passkey; once your part is done you no longer need to watch the clock: the delay finishes on its own and your access is restored automatically.
We have detailed guides for guardians and account owners on how to protect the workspace and restore signing:
What Guardians Can and Cannot Do
To avoid confusion, here is exactly what a guardian is—and what they are not:
Guardians cannot:
See your balances or your transactions.
Initiate transactions.
Start a recovery without your explicit request.
Collude against you to take over your account—this is technically impossible in Bron’s system.
Be designated as a guardian by yourself from another email. While technically possible, this practice is not recommended as it reduces the security benefits of the guardian system.
Guardians can:
Assist you only if you lose access to everything and request recovery.
Provide you with a one-time security code when you ask them.
Use any mobile browser—no app install required.
Start with no Bron account at all — any person can be a guardian and creates a free guardian-only login from the invitation link.
Be existing Bron users (each user can serve as guardian for up to 10 workspaces).
Use a free guardian account—no purchases, $BRON tokens, or subscription required.
Other important notes
If a guardian loses access to their passkey or Apple/Google account, you can still recover your workspace—only the recovery delay increases (self-recovery takes 30 days instead of 2 days).
Guardians do not need any crypto knowledge. The only requirement is that they can:
Set up a passkey on their phone
Not lose access to their Apple ID / Google account
Respond to you with a code when needed.
If you have questions, contact our support team via messenger on the Bron platform or by email support@bron.org.
