Using TAKE (Throw Away the Key Encryption)
TAKE (Throw Away the Key Encryption) is a security feature that encrypts your video and audio during the recording process, through transit, and at rest. TAKE applies to all eligible cameras and cannot be enabled or disabled for individual cameras. Ring's can only use keys to power intelligent features, then deletes these keys.
To learn more about the encryption process, download the TAKE white paper.Visit our blog post to learn more about the introduction of TAKE.
Important note: By design, Ring cannot access or help recover your TAKE encrypted videos if you lose all recovery methods and enrolled mobile devices. Keep your passphrase and cloud backup safe so you don't lose access to your encrypted videos.
Requirements and eligibility
Mobile device:
- iOS 17+ or Android 9+
- Latest Ring app version
All Ring cameras support TAKE. Check your camera's encryption status in the Ring app under Your Cameras in the Video Encryption settings which will display as:
- TAKE (Throw Away the Key Encryption):Ring camera is protected by TAKE. Most Ring features will work.
- Standard Encryption:TAKE is not yet available for this Ring camera. Video is still encrypted in transit and at rest. Ring will migrate these Ring devices to TAKE automatically when it becomes available.
- End-to-End Encryption1:Ring camera has been enrolled in end-to-end encryption1. Only the Ring account owner and their enrolled personal devices can view this video.
Setting up TAKE (Throw Away the Key Encryption)
To set up TAKE in the Ring app:
- Tap the menu (☰).
- TapControl Center.
- TapVideo Encryption.
- TapLet’s turn on TAKE (Throw Away the Key Encryption).
- TapTurn On TAKE.
- Set up your recovery options.
If you'd like to set up End-to-End Encryption1 as your video encryption, visit Using end-to-end encryption.
Recovery options
When enabling TAKE, you'll set up recovery options so you can regain access to your encrypted videos if you switch, lose, or set up a new mobile device. The mobile device you use during setup becomes your first enrolled device. When setup completes, TAKE is active on all eligible cameras.
Ring strongly recommends enabling automatic cloud backup alongside your 12-word passphrase. Additional recovery options, including camera-based recovery, will become available as TAKE rolls out. Ring will notify you when a new recovery option is available on your account, and it will appear in Recovery Settings.
Automatic cloud backup (recommended)
iOS: iCloud Keychain automatically saves your encrypted recovery key. When you sign in on a new iPhone or iPad with the same Apple ID, the Ring app automatically restores access to your encrypted content with no extra steps needed.
Android: Ring uses two options to protect your recovery key:
- Google Blockstoreautomatically backs up and restores your recovery key during the device-to-device transfer process. When you set up a new Android device by restoring access from a backup with the same Google account, your key is automatically available. If you set up your new device as new or use a different Google account, the recovery key will not be available.
- Google Drive backupprovides an additional cloud-based recovery path. Ring can store your encrypted recovery key in your Google Drive. This requires you to grant Ring permission to access Google Drive during enrollment.
To recover your access with cloud backup:
If you set up iCloud Keychain, Google Blockstore, or Google Drive backup, access restores automatically when you sign in to the Ring app on your new mobile device. If access does not restore, use your 12-word passphrase.
12-word passphrase
When you set up TAKE, the app generates a unique 12-word passphrase. This is your default recovery option and cannot be disabled.
- Store your passphrase securely in a password manager, physical safe, or secure note.
- Never share your passphrase with anyone.
- This method works on any mobile device and any platform, making it your most reliable option if other methods are unavailable.
- You can regenerate a new passphrase from any enrolled mobile device at any time.
To recover access with your 12-word passphrase:
- Install the Ring app on your new mobile device and sign in.
- Tap the menu (☰).
- TapControl Center.
- TapVideo Encryption.
- TapEnroll This Device.
- TapEnter Passphrase.
- Enter all 12 words in the correct order (lowercase, with spaces).
Important note: If all recovery methods fail, your encrypted videos cannot be accessed.
Generate a new passphrase
You can regenerate your passphrase from any enrolled device:
- Tap the menu (☰).
- TapControl Center.
- TapVideo Encryption.
- TapRecovery Settings.
- TapGenerate New Passphrase.
- Save the new passphrase securely.
Your previous passphrase will no longer work after generating a new one.
Camera-based recovery
If you have a TAKE enrolled Ring camera nearby, you can recover access over Bluetooth without your passphrase or cloud backup. Camera-based recovery will be on by default for capable cameras. You can turn this feature off from the Recovery Settings in the Ring app.
Camera-based recovery will become available as TAKE gradually rolls out to all neighbors.
Camera-based recovery is not available for the following Ring devices:
- Video Doorbell (1st Gen)
- Video Doorbell (2nd Gen)
- Video Doorbell Wired
- Stick Up Cam (1st Gen)
- Stick Up Cam (2nd Gen)
- Spotlight Cam Battery (1st Gen)
- Peephole Cam
- Car Cam
Important note: Camera-based recovery is not available for Ring accounts that have one or more Ring cameras enrolled into End-to-End Encryption1. Learn more about recovery options for Ring cameras enrolled in End-to-End Encryption.
Feature compatibility
While most features are available when TAKE is enabled, some features require a temporary pause of TAKE to use. Pausing will keep your setup intact, and resuming does not require re-enrolling or recreating your passphrase.
If you turn on a feature that is not yet compatible while TAKE is enabled, the Ring app will offer to pause TAKE for you.
Pausing must be done from an enrolled device. If your mobile device is not enrolled, the Ring app will prompt you to enroll first.
Videos recorded before pausing TAKE stay protected by TAKE and will remain viewable from your enrolled devices. Videos recorded while TAKE is paused will use Standard Encryption.
To pause TAKE:
- Tap the menu (☰).
- TapControl Center.
- TapVideo Encryption.
- TapTAKE (Throw Away the Key Encryption).
- TapPause and Continue.
TAKE will pause on all enrolled cameras. To resume, return to the same setting and re-enable TAKE.
Features that require a temporary pause in TAKE:
- Video Search2
- Video Descriptions3
- Unusual Event Alert3
- Single Event Alert3
- Active Warnings3
- Familiar Faces4
- Virtual Security Guard5
- Video Verification
- Quick Replies
- Integration with Alexa and Fire TV
- Viewing on ring.com
- Ring Appstore
- Third-Party App Integrations
Encryption Activity Log
The encryption activity log records encryption events for each Ring camera and shows when an enrolled device was given or removed access, when encryption was turned on or paused, or when a recovery backup was created. You can manage your mobile devices to remove or verify any personal devices found on the Encryption Activity Log.
To access the encryption activity log:
- Open the Device Dashboard for your camera.
- TapDevice Health.
- TapEncryption Status.
- TapEncryption Activity Log.
Managing personal devices
You can always view or manage which mobile devices are enrolled in your encryption in the Ring app. To view your enrolled devices in the Ring app:
- Tap the menu (☰).
- TapControl Center.
- TapVideo Encryption.
- TapPersonal Devices.
Verify a personal device
Device verification confirms the identity of a mobile device on your personal device list using a QR code or a 60-digit number to verify enrolled personal devices.
To verify an enrolled personal device:
- Tap the menu (☰).
- TapControl Center.
- TapVideo Encryption.
- TapPersonal Devices.
- From thePersonal Deviceslist, select a device.
- TapScan the QR code.
- Scan the QR code displayed on one mobile device with the other to confirm the Verification Number matches on both mobile devices.
- If you cannot scan, tap Compare a 60-digit number and confirm the number matches on both.
Important note: If the verification check cannot be completed, the Ring app will display a message that the mobile device cannot be verified. Make sure you have the correct mobile device and try again.
Remove a personal device
Removing a personal device revokes its access to encrypted video and signs it out of your encryption. To remove a device:
- Tap the menu (☰).
- TapControl Center.
- TapVideo Encryption.
- TapPersonal Devices.
- From thePersonal Deviceslist, select a device.
- TapRemove Device.
Shared Users
Shared Users can view your encrypted Ring cameras with TAKE enabled on their own enrolled personal device.
- New Shared Users:Accepting a shared user invite also enrolls a new shared user in TAKE.
- Existing Shared Users:For most Shared Users, no action is required; these users will be added to encryption automatically when you enable TAKE.
How Shared Users get access
If a shared user cannot view encrypted content, updating to the latest Ring app usually resolves it. If not, they can send an access request. Send an access request to an Owner:
- Open the Ring app.
- Tap theAccess Restrictedcamera tile.
- Tap the encryption notification and follow the in-app prompts.
If access is still not granted after the in-app steps are completed, you can ask the owner to remove you as a shared user and add you again. You do not need a new Ring account, just accept the new shared user invite to gain or restore access.
Shared Users access requests
If you are a shared user who needs access to someone else's encrypted cameras, follow these steps to find your outgoing requests:
- Open the Ring app.
- Tap the menu (☰).
- TapControl Center.
- TapVideo Encryption.
- TapAccess Requests.
- TapSent Requests.
- TapMy Requests.
Each request shows the Ring device owner's name and one of the following statuses:
- Request Pending:The Ring device owner has not yet responded to your request.
- Request Again:Tap to resend your request if the owner has not responded.
Approve or decline Shared Users access requests
When a shared user sends an Access Request, it will notify the account owner in the Ring app.
To approve or decline a shared user’s access request in the Ring app:
- Tap the menu (☰).
- TapControl Center.
- TapVideo Encryption.
- TapAccess Requests.
- TapApprove AccessorDecline Actionfor each request.
Shared Users and recovery
Shared Users manage their own viewing devices and recovery options. They cannot manage the account owner's encryption settings.
Reset TAKE (Throw Away the Key Encryption)
Resetting encryption permanently removes access to all previously encrypted videos and cannot be undone. Ring cannot restore encrypted videos.
If you reset your account encryption:
- All enrolled cameras are unenrolled from TAKE.
- All enrolled mobile devices are unenrolled.
- All previously encrypted videos become permanently inaccessible.
To reset TAKE:
- Tap the menu (☰).
- TapControl Center.
- TapVideo Encryption.
- TapReset Account Encryption.
- Follow the on-screen instructions to complete the reset.
Frequently asked questions
Can I turn off TAKE for specific cameras?
No. TAKE applies to all eligible cameras.
Can Ring employees view my encrypted video?
No. You always control your videos and who can view them.
What if I lose my passphrase and cannot recover access?
To recover access, Ring recommends setting up Automatic cloud backup as a recovery option at the time of encryption setup. If all recovery methods fail, your encrypted videos cannot be accessed. You can reset encryption and start fresh, but previously encrypted video is permanently lost.
