imtoken will never ask for your seed phrase, private key or verification code. Always review the address, network and request details before transferring, signing or approving.
Home / Signature Requests
imtoken

Signature Requests

Signature Requests: practical guidance with network, transaction, permission and security checks.

Core security principles

Signature concepts

For Signature Requests, this section connects Signature concepts with Signature workflow. Security is not a single feature; it is a set of habits that reduce exposure of recovery data, unnecessary approvals and incorrect transfers. Seed phrases and private keys remain under the user’s control, and official staff should never ask for them.

Signature workflow

In practical use, Signature verification should not be evaluated separately from Signature risk. Be cautious with urgency, reward promises, fake airdrops, fake support and websites that ask you to import a wallet. Even legitimate requests should clearly identify the account, network, contract or signature context.

Treat Signature management as part of a repeatable review routine. Public computers, untrusted Wi-Fi, remote-control sessions and unknown software can increase risk. Important actions are better performed on trusted devices and networks. This helps turn visible information into verified information.

Common risk scenarios

Signature workflow

For Signature Requests, this section connects Signature workflow with Signature verification. Security is not a single feature; it is a set of habits that reduce exposure of recovery data, unnecessary approvals and incorrect transfers. Seed phrases and private keys remain under the user’s control, and official staff should never ask for them.

Signature verification

In practical use, Signature risk should not be evaluated separately from Signature management. Be cautious with urgency, reward promises, fake airdrops, fake support and websites that ask you to import a wallet. Even legitimate requests should clearly identify the account, network, contract or signature context.

Treat Signature concepts as part of a repeatable review routine. Public computers, untrusted Wi-Fi, remote-control sessions and unknown software can increase risk. Important actions are better performed on trusted devices and networks. This helps turn visible information into verified information.

How to identify and respond

Signature verification

For Signature Requests, this section connects Signature verification with Signature risk. Security is not a single feature; it is a set of habits that reduce exposure of recovery data, unnecessary approvals and incorrect transfers. Seed phrases and private keys remain under the user’s control, and official staff should never ask for them.

Signature risk

In practical use, Signature management should not be evaluated separately from Signature concepts. Be cautious with urgency, reward promises, fake airdrops, fake support and websites that ask you to import a wallet. Even legitimate requests should clearly identify the account, network, contract or signature context.

Treat Signature workflow as part of a repeatable review routine. Public computers, untrusted Wi-Fi, remote-control sessions and unknown software can increase risk. Important actions are better performed on trusted devices and networks. This helps turn visible information into verified information.

Everyday security checks

Signature risk

For Signature Requests, this section connects Signature risk with Signature management. Security is not a single feature; it is a set of habits that reduce exposure of recovery data, unnecessary approvals and incorrect transfers. Seed phrases and private keys remain under the user’s control, and official staff should never ask for them.

Signature management

In practical use, Signature concepts should not be evaluated separately from Signature workflow. Be cautious with urgency, reward promises, fake airdrops, fake support and websites that ask you to import a wallet. Even legitimate requests should clearly identify the account, network, contract or signature context.

Treat Signature verification as part of a repeatable review routine. Public computers, untrusted Wi-Fi, remote-control sessions and unknown software can increase risk. Important actions are better performed on trusted devices and networks. This helps turn visible information into verified information.

Risk note

Third-party DApps and smart contracts can introduce risk. Review permissions and remove approvals you no longer need.