Back to home
ImutablSecurity

Your wallet key stays protected.

Imutabl is built so your wallet private key is never stored as plain text and is never shown back to us, our team, or other users. Your PIN is the control that unlocks signing when you choose to take an on-chain action.

Wallet model

Encrypted at rest

Private keys are encrypted with PIN-based encryption before storage.

Temporary in use

Keys are only decrypted briefly in memory for user-approved signing.

Not publicly exposed

Only wallet addresses and blockchain transactions are public by design.

No raw private key storage

Imutabl does not store your wallet private key in plain text. When a wallet is created, the key is encrypted before it is saved.

Your PIN unlocks signing

Your wallet PIN is required before transactions can be signed. Without that PIN, the stored encrypted key is not usable for signing.

Short-lived wallet sessions

After you unlock your wallet, Imutabl creates a temporary signing session. These sessions expire quickly and are used only for authorized transaction requests.

Limited operational access

Imutabl systems use keys only when needed to complete actions you request, such as minting, collecting, listing, or transferring. We do not expose private keys to staff dashboards or public APIs.

What Imutabl can see

Imutabl can see normal account data needed to run the product, such as your email, username, profile details, wallet address, posts, and app activity. Your wallet address and on-chain transactions are public on the blockchain, independent of Imutabl.

What Imutabl cannot casually access

We do not store your raw private key, publish it, or make it available to our team. Transaction signing requires your authenticated session and wallet PIN. Active wallet sessions are short-lived and are cleared after expiry.

Your responsibilities

Keep your account password, wallet PIN, and recovery information private. Imutabl will never ask you to send your private key in chat, email, social media, or support messages.