imtoken will never ask for your seed phrase, private key or verification code. Always review the address, network and request details before transferring, signing or approving.
Home/Create & Backup

How-to guide

Create & Backup

One of the most important steps after creating a wallet is to back up recovery information correctly and keep the backup appropriately separated from everyday online devices.

01

Check the prerequisites first

One of the most important steps after creating a wallet is to back up recovery information correctly and keep the backup appropriately separated from everyday online devices. When working with Create & Backup, separate what the interface displays from facts that can be verified on-chain. A wallet can organize information and prepare requests, but the network, address, contract, and final transaction state still need independent context. If a critical field cannot be explained, stop before confirming and verify it again instead of responding to urgency from a page, an unknown contact, or short-term market movement.

Seed phrases and private keys should not be sent through chat tools, cloud notes, screenshots, or web forms because those channels expand the number of copies and exposure points. In a real workflow, Create & Backup should not be reduced to a single click or one status message. Review the network, account, requested action, amount, and permission scope as separate checkpoints so inconsistencies become visible earlier. If a critical field cannot be explained, stop before confirming and verify it again instead of responding to urgency from a page, an unknown contact, or short-term market movement.

Key fields

  • Confirm that the network, address, or contract involved in Create & Backup matches the intended context
  • Use public information for verification and never submit a seed phrase, private key, or verification code
  • Treat signatures, approvals, transfers, and contract calls as separate decisions rather than permanent trust
Practical checkIdentify the object first, then the action, then the expected result.
02

Work through the steps deliberately

Seed phrases and private keys should not be sent through chat tools, cloud notes, screenshots, or web forms because those channels expand the number of copies and exposure points. In a real workflow, Create & Backup should not be reduced to a single click or one status message. Review the network, account, requested action, amount, and permission scope as separate checkpoints so inconsistencies become visible earlier. If a critical field cannot be explained, stop before confirming and verify it again instead of responding to urgency from a page, an unknown contact, or short-term market movement.

Before importing a wallet, verify the software source and device environment; the import process handles highly sensitive secrets and should not be performed on a public computer. Risk often hides inside familiar-looking details. Similar names, addresses, domains, and repeated confirmation dialogs can make a request feel routine even when the underlying target or authority is different. If a critical field cannot be explained, stop before confirming and verify it again instead of responding to urgency from a page, an unknown contact, or short-term market movement.

Order of operations

  • Confirm that the network, address, or contract involved in Create & Backup matches the intended context
  • Use public information for verification and never submit a seed phrase, private key, or verification code
  • Treat signatures, approvals, transfers, and contract calls as separate decisions rather than permanent trust
Practical checkBefore transferring, verify address, network, and amount; before signing, read the request.
03

Common mistakes and risk signals

Before importing a wallet, verify the software source and device environment; the import process handles highly sensitive secrets and should not be performed on a public computer. Risk often hides inside familiar-looking details. Similar names, addresses, domains, and repeated confirmation dialogs can make a request feel routine even when the underlying target or authority is different. If a critical field cannot be explained, stop before confirming and verify it again instead of responding to urgency from a page, an unknown contact, or short-term market movement.

One of the most important steps after creating a wallet is to back up recovery information correctly and keep the backup appropriately separated from everyday online devices. After a Create & Backup action, review the final state and retain non-secret reference information such as the transaction hash, network name, or contract address when relevant so later verification is possible. If a critical field cannot be explained, stop before confirming and verify it again instead of responding to urgency from a page, an unknown contact, or short-term market movement.

Risk signals

  • Confirm that the network, address, or contract involved in Create & Backup matches the intended context
  • Use public information for verification and never submit a seed phrase, private key, or verification code
  • Treat signatures, approvals, transfers, and contract calls as separate decisions rather than permanent trust
Practical checkThird-party DApps and smart contracts can introduce risk, so stop and re-check unfamiliar requests.
04

Review what remains afterward

One of the most important steps after creating a wallet is to back up recovery information correctly and keep the backup appropriately separated from everyday online devices. After a Create & Backup action, review the final state and retain non-secret reference information such as the transaction hash, network name, or contract address when relevant so later verification is possible. If a critical field cannot be explained, stop before confirming and verify it again instead of responding to urgency from a page, an unknown contact, or short-term market movement.

Seed phrases and private keys should not be sent through chat tools, cloud notes, screenshots, or web forms because those channels expand the number of copies and exposure points. When working with Create & Backup, separate what the interface displays from facts that can be verified on-chain. A wallet can organize information and prepare requests, but the network, address, contract, and final transaction state still need independent context. If a critical field cannot be explained, stop before confirming and verify it again instead of responding to urgency from a page, an unknown contact, or short-term market movement.

Post-action review

  • Confirm that the network, address, or contract involved in Create & Backup matches the intended context
  • Use public information for verification and never submit a seed phrase, private key, or verification code
  • Treat signatures, approvals, transfers, and contract calls as separate decisions rather than permanent trust
Practical checkKeep public references such as transaction hashes and review connections or approvals that are no longer needed.

imtoken

Keep the network, request, and expected result visible

Review the details before transferring, signing, approving, or interacting with a contract.

Download imtoken