imtoken will never ask for your seed phrase, private key or verification code. Always review the address, network and request details before transferring, signing or approving.

imtoken

Seed Phrase & Private Key Security

Understand control of seed phrases and private keys, offline backup, screenshot and cloud-storage risks, and safe recovery boundaries.

On this pagerelationship between seed phrases and private keysoffline recordingavoiding screenshots and syncingenvironment checks during recoveryno one should ask for them

Seed Phrase & Private Key Security: Understand control of seed phrases and private keys, offline backup, screenshot and cloud-storage risks, and safe recovery boundaries. Wallet security is built through repeatable habits rather than a single setting. When facing a signature, approval, transfer or recovery request, protecting sensitive information and reviewing details should come before convenience.

Security principle: In Seed Phrase & Private Key Security, imtoken does not ask users to enter a seed phrase, private key or wallet recovery phrase.
Offline backup and private key protection

relationship between seed phrases and private keys

Check 1

When working with relationship between seed phrases and private keys, place the concept back into a real transaction flow. Information on screen may come from on-chain state, local wallet records or a third-party page, so verify public details such as the network, address, transaction hash or contract before deciding what to do next.

Check 2

In Seed Phrase & Private Key Security, the section on relationship between seed phrases and private keys connects directly to the page’s main task. Any page, person or remote-control request that asks for a seed phrase, private key or verification code should be treated as high risk. A safer first response is to stop entering sensitive information and verify the situation using public on-chain data.

Within Seed Phrase & Private Key Security, for relationship between seed phrases and private keys, keep the decision reversible for as long as possible: verify information first, then authorize only the minimum action needed. If the request changes the network, transfers an asset, grants spending permission or interacts with a contract, review the exact target and expected result before confirming.

In Seed Phrase & Private Key Security, a good outcome for relationship between seed phrases and private keys is not simply that an interface reports success. The useful evidence is whether the expected on-chain state appears on the correct network, under the correct address or contract, and with a transaction or permission record that matches the intended action.

offline recording

Check 1

A common mistake with offline recording is drawing a conclusion from a single field. A stronger check compares the active network, destination, asset identity and on-chain record together, especially for same-named tokens, cross-network activity or DApp interactions.

Check 2

In Seed Phrase & Private Key Security, the section on offline recording connects directly to the page’s main task. Any page, person or remote-control request that asks for a seed phrase, private key or verification code should be treated as high risk. A safer first response is to stop entering sensitive information and verify the situation using public on-chain data.

Within Seed Phrase & Private Key Security, for offline recording, keep the decision reversible for as long as possible: verify information first, then authorize only the minimum action needed. If the request changes the network, transfers an asset, grants spending permission or interacts with a contract, review the exact target and expected result before confirming.

In Seed Phrase & Private Key Security, a good outcome for offline recording is not simply that an interface reports success. The useful evidence is whether the expected on-chain state appears on the correct network, under the correct address or contract, and with a transaction or permission record that matches the intended action.

avoiding screenshots and syncing

Check 1

For avoiding screenshots and syncing, a useful review pattern is source, scope and result. Source explains where the request came from; scope shows what the action can affect; result is then checked through transaction records, block confirmations or approval state.

Check 2

In Seed Phrase & Private Key Security, the section on avoiding screenshots and syncing connects directly to the page’s main task. Any page, person or remote-control request that asks for a seed phrase, private key or verification code should be treated as high risk. A safer first response is to stop entering sensitive information and verify the situation using public on-chain data.

Within Seed Phrase & Private Key Security, for avoiding screenshots and syncing, keep the decision reversible for as long as possible: verify information first, then authorize only the minimum action needed. If the request changes the network, transfers an asset, grants spending permission or interacts with a contract, review the exact target and expected result before confirming.

In Seed Phrase & Private Key Security, a good outcome for avoiding screenshots and syncing is not simply that an interface reports success. The useful evidence is whether the expected on-chain state appears on the correct network, under the correct address or contract, and with a transaction or permission record that matches the intended action.

environment checks during recovery

Check 1

environment checks during recovery is not only a feature label; it also has a specific risk boundary. If a page conflicts with the wallet display or the request cannot be explained clearly, stop before signing, approving or transferring and verify through trusted public information.

Check 2

In Seed Phrase & Private Key Security, the section on environment checks during recovery connects directly to the page’s main task. Any page, person or remote-control request that asks for a seed phrase, private key or verification code should be treated as high risk. A safer first response is to stop entering sensitive information and verify the situation using public on-chain data.

Within Seed Phrase & Private Key Security, for environment checks during recovery, keep the decision reversible for as long as possible: verify information first, then authorize only the minimum action needed. If the request changes the network, transfers an asset, grants spending permission or interacts with a contract, review the exact target and expected result before confirming.

In Seed Phrase & Private Key Security, a good outcome for environment checks during recovery is not simply that an interface reports success. The useful evidence is whether the expected on-chain state appears on the correct network, under the correct address or contract, and with a transaction or permission record that matches the intended action.

no one should ask for them

Check 1

After completing an action involving no one should ask for them, review the outcome again. Transaction status, approval targets, network confirmations and balance changes are stronger evidence than a page-level success message alone.

Check 2

In Seed Phrase & Private Key Security, the section on no one should ask for them connects directly to the page’s main task. Any page, person or remote-control request that asks for a seed phrase, private key or verification code should be treated as high risk. A safer first response is to stop entering sensitive information and verify the situation using public on-chain data.

Within Seed Phrase & Private Key Security, for no one should ask for them, keep the decision reversible for as long as possible: verify information first, then authorize only the minimum action needed. If the request changes the network, transfers an asset, grants spending permission or interacts with a contract, review the exact target and expected result before confirming.

In Seed Phrase & Private Key Security, a good outcome for no one should ask for them is not simply that an interface reports success. The useful evidence is whether the expected on-chain state appears on the correct network, under the correct address or contract, and with a transaction or permission record that matches the intended action.

Important risk reminder

For Seed Phrase & Private Key Security, Remember: the user is responsible for safeguarding the seed phrase and private keys, and official staff will not ask for a seed phrase, private key or verification code. On-chain transactions generally cannot be reversed by a wallet alone, and third-party DApps or smart contracts may involve technical or fraud risks. Review the address, network, amount, approval target and permission scope before acting.

Related reading

Continue with imtoken

Continue from the imtoken download entry after reviewing the key checks in Seed Phrase & Private Key Security.

Download imtoken