Account Security
Protect wallet access, signatures, and account recovery
Your wallet controls trading actions. Treat every signature and transaction as a request to be verified, even when it appears during a familiar workflow.
Security checklist
- Enable 2FA in Settings → Account.
- Verify the domain before connecting or signing.
- Never share a seed phrase, private key, authenticator secret, or one-time code.
- Review the network, contract, token, amount, and action in every request.
- Remove wallet connections and approvals you no longer use.
- Keep transaction hashes for failed or unexpected onchain actions.
Understand signatures
A login signature should authenticate the session without moving funds. An approval or transaction can grant permissions or change onchain balances. Reject any request whose purpose, destination, or amount you do not understand.
Support will never need your seed phrase or private key. If someone asks for either, stop the conversation and report it through the operator's official support channel.
For 2FA setup and permanent deletion, see Account.