Beginner

Security 101: don’t get drained — Key concepts

Page 3 of 6 — Section 3 of 6

User Beginner
3/6 — Security 101: don’t get drained — Key concepts

Seed handlingSeed stays offline. Never type it into a website, chat, or “support” form. Write it on paper or metal; store in two safe places.

Device hygieneKeep OS and wallet updated, use a passcode/biometric, and avoid jailbreaking/rooting. If a device feels compromised, stop signing until it’s clean.

Link safetyType URLs yourself, avoid ads, and check the full domain. Bookmarks beat search results. Never click “support” links from DMs.

ApprovalsRead spender and amount. If it says “all tokens” or an unknown spender, cancel. Revoke approvals you no longer need.

BackupsKeep two safe copies (different locations), or use Shamir/shared backups so no single paper is the “single point of failure.” Test a restore with a dummy wallet first.

Example (do NOT use): "light dash cereal ... palm orchard squirrel"
Goal: show format only. Never store real seeds in screenshots or docs.
Key points
  • Seed:Offline only; never typed into chats or forms.
  • Device:Update OS/wallet; lock screen; avoid shady installs.
  • Links:Type URLs; avoid ads; verify domain before connecting.
  • Approvals:Read spender/amount; revoke stale permissions.
  • Backups:Two safe copies or Shamir/shared backups; test a dummy restore.
← Previous section
Next section →