PIN and passphrase
Use a PIN you do not reuse anywhere. A passphrase adds a second, memory-held secret that even a stolen device cannot unlock on its own — write down what it protects, never the secret itself.
This guide walks through what happens on trezor.io/start in plain language: connecting the device, creating a wallet, writing down a recovery seed, and building habits that keep digital assets where they belong — with you.
Keys stay offline. Private keys are generated and held by the device, never by a browser.
One written backup. The recovery seed is the only thing that restores a wallet.
Verify on device. Amounts and addresses are confirmed on the hardware screen, not the computer.
No seed, ever. Anyone asking for the words is attacking you, whoever they claim to be.
Nothing here needs an account, an email or a phone number. The device and the official companion app are the whole toolchain — the rest is patience.
Check the packaging for cuts, resealed tape or missing seals, and look over the device and cable for marks. A device that arrives with a pre-written seed phrase should be returned immediately.
Install the official desktop or mobile app from the vendor's own site, then plug the device in with the supplied cable. Firmware updates are shown before anything else and are safe to accept.
Choose a new wallet, set a PIN on the device itself, and write the recovery seed down by hand in the given order. Confirm the backup when prompted, then put the card somewhere private.
Receive a small amount first, confirm the address on the device display, then send a small test payment out again. Only move meaningful balances once both directions behave as expected.
Setup is a one-time, offline-friendly task. Take fifteen unhurried minutes, close other tabs, and ignore anyone who offers to "help" over chat while you do it.
Hardware guards the keys. Everything around it — the backup, the passphrase, the link you clicked — is human behaviour, and that is where most losses happen.
Three-second rule
If a message is urgent, unexpected and mentions your wallet, treat it as hostile until proven otherwise. Urgency is the tool, not the warning sign.
Use a PIN you do not reuse anywhere. A passphrase adds a second, memory-held secret that even a stolen device cannot unlock on its own — write down what it protects, never the secret itself.
Paper or metal, offline, somewhere you would notice going missing. No photos, no cloud notes, no password manager, no screenshots, no printer with a memory.
Update only through the official companion app, and download that app only from the vendor's own domain. Never install a "wallet fix" tool from an ad or a search result.
Always read the destination address and amount on the hardware screen before approving. Malware can rewrite what your browser shows; it cannot rewrite the device display.
Real support never opens with a direct message, never asks for a seed phrase, and never asks you to move funds to "safe" addresses. Anyone who does is a thief.
Small tests, slow approvals and a second look at network fees beat speed. If a screen makes no sense to you, decline it — confusion is a signal, not an inconvenience.
A well-backed-up wallet survives a lost, stolen or broken device. What it cannot survive is a compromised backup — so this is the one part worth rehearsing.
Buy a replacement from an official seller, choose restore rather than new wallet, and enter the seed on the new device's own screen.
Treat the wallet as compromised. Create a new wallet with a fresh seed and move the balance to it promptly, in a safe environment.
Stop. Confirm the vendor's real domain by typing it yourself, and ask in an official channel before approving anything.
A short read for anyone setting up a hardware wallet for the first time.
Trezor.io/start is the beginning of a simple idea: your keys should never live on a device that is connected to the internet. The setup flow is deliberately short. You unbox the device, confirm that nothing has been tampered with, connect it to a computer or phone, and install the official companion app. From there you either generate a brand-new wallet or restore an existing one.
The moment that matters most is the recovery seed. Write those words by hand, in order, on the card included in the box, then store it somewhere private and offline. Never photograph it, never type it into a website, and never share it with anyone who contacts you first — no support agent, no exchange, no giveaway will ever need it.
Once the wallet exists, practise quietly. Send a small test amount, confirm the address on the device screen, then send the rest. Keep firmware updated through the official app, use a PIN and a passphrase, and treat every unexpected message as a threat. Take your time with the first ten minutes; they protect everything that follows. A hardware wallet does not remove responsibility — it puts it back where it belongs: with you.
The recurring questions from first-time setup, answered without jargon. If something still feels unclear, slow down — that instinct is usually right.
No account, email or phone number is required. The device generates the wallet locally, and the companion app simply talks to it.
That is a tampered device. Do not use it, do not enter the words anywhere, and return it to the seller. Genuine devices always generate a fresh seed during setup.
No. The words belong on the device's own screen, or on a replacement device during a restore. A desktop keyboard should never see them.
Buy a replacement, choose restore, and enter the written seed on the new device. The same wallet, the same addresses, no company involved.
Start small in both directions. A tiny incoming payment and a tiny outgoing payment confirm addresses, fees and your own understanding before real value is on the line.
Work through the four steps in order, keep the recovery seed offline, and test with small amounts first. That is the whole method.