Security checklist
Wallet Blockchain Security Checklist Before Support
You open your wallet and something feels wrong: a balance looks off, a transaction is pending, or a support message is asking for urgent action. I want you to pause there, because the first checks can separate a normal wallet blockchain delay from a real security problem.
In short
- A wallet problem is urgent if funds moved without your approval, a recovery phrase was shared, or a site gained spending permission you did not intend.
- Do not give support your recovery phrase, private key, screen share, or remote access, even if the message looks official.
- Transaction verification means checking the receiving address, network, amount, token contract, and wallet permissions before taking another action.
- Phishing checks should happen before you reconnect a wallet, retry a failed transaction, or follow any support instruction.
- Exodus, MetaMask, and Trust Wallet can all show many assets or networks, so a missing balance may be a display or network issue rather than theft.
What should I check before contacting wallet support?
Start with the risk in plain words: if the wrong person gets your recovery phrase, private key, device access, or token approval, they may be able to move funds faster than support can respond. I use this wallet troubleshooting checklist to slow the situation down and sort normal wallet behavior from danger.
Step one — stop new activity
- Do not retry the same transaction repeatedly.
- Do not connect the wallet to more sites to test it.
- Do not answer direct messages claiming to be support.
- Do not paste your recovery phrase into any form, chat, website, or app.
- If a support chat asks for a list of words, private key, screen share, or remote control, leave the chat.
Warning: One mistaken approval or one shared recovery phrase can cost funds. Support can help you read records and fix settings, but they cannot reverse a valid on-chain transfer just because it was a mistake.
Step two — decide whether this is a display issue or a fund movement issue
- Look for an outgoing transaction you did not start.
- Check whether one token is missing or the whole wallet looks empty.
- Confirm you are viewing the correct account.
- Confirm you are on the correct network for that asset.
- Refresh the wallet only from inside the app or extension you already use.
For Exodus, remember that the app is Free, and Exodus says users can Manage thousands of digital assets. A broad asset list can make wallet views feel busy, so I first ask whether the asset is hidden, on another account, or on another network such as Base.
For MetaMask, supported platforms are Chrome, Firefox, Brave, Edge, Opera, iOS, Android, Web, and it supports Hundreds of thousands of tokens. That range is useful, but it also means the same address may look different depending on network, token import, or browser profile.
For Trust Wallet, platforms are iOS, Android, browser extension, and supported networks include Bitcoin, Ethereum, Solana, Cosmos, Optimism, BNB Smart Chain (BNB), Sui (SUI). If a token belongs on one network and you are viewing another, the balance may appear missing even when it has not moved.
Step three — run phishing checks before you reconnect
- Ask where the support message came from: inside the official app, an official help channel, or a stranger in a private message.
- Treat urgency as a red flag, especially phrases like verify now or sync your wallet.
- Check whether the website name was typed manually or reached from a search ad, social post, or message.
- Look for unexpected wallet pop-ups asking for broad permissions.
- Be suspicious if the site asks you to validate, restore, or unlock by entering a recovery phrase.
When someone asks me, is my wallet compromised, I start with exposure. Did a phrase get shared? Did a device get taken over? Did a malicious approval happen? Did funds actually move?
Step four — do transaction verification calmly
- Open the transaction details in your wallet.
- Compare the receiving address with the address you meant to use.
- Confirm the network matches the asset.
- Confirm the amount and fee prompt were what you approved.
- Check whether the transaction was a token transfer, a swap, or an approval.
- If the transaction failed, do not assume retrying is safe; first confirm why it failed.
A common what-if: you intended to send a token, but the wallet prompt was actually asking for spending permission. That approval may not move funds immediately, but it can give a connected contract power over that token. If you see approvals you do not recognize, treat them as urgent.
Step five — check device and app safety
- Make sure the wallet app or extension is the one you intentionally installed from the official source named by the wallet provider.
- Remove duplicate wallet extensions you do not recognize.
- Check whether another browser profile has the wallet open.
- Update the operating system and browser through their normal update paths.
- Lock the wallet when you step away.
- If a device feels unsafe, use a separate clean device for viewing only, and do not enter a recovery phrase until you have a plan.
I am careful here because a risky device and an exposed wallet are not the same problem. If only the browser is cluttered, cleaning extensions may help. If the recovery phrase was exposed, the safer move is usually to create a new wallet and move remaining funds after checking approvals and addresses.
Step six — prepare safe information for support
- Share the public wallet address involved.
- Share the transaction identifier if there is one.
- Share the wallet name, network, asset name, and what you expected to happen.
- Share screenshots only after hiding balances or personal details you do not want public.
- Never share the recovery phrase, private key, password, device passcode, or remote access.
Good support information sounds like this: I used MetaMask on Brave, the token is not showing on the expected network, and I do not see an outgoing transfer. Unsafe support information sounds like this: I can send my recovery phrase so you can check it. The first helps; the second gives away control.
Why does each checklist group matter?
Why pausing protects you
Most wallet losses I have helped people investigate became worse after the first scare. A user saw a strange prompt, tried another site, accepted another approval, then spoke with an impersonator. Pausing breaks that chain and gives you time to separate fear from facts.
Why network and asset checks matter
A wallet blockchain record may be correct even when the app display looks wrong. Self-custody wallets often show different assets across different networks, accounts, and browser profiles. If no funds moved, you may be dealing with token visibility, network selection, or account selection rather than theft.
Why phishing checks matter
Phishing works because it borrows trust. The page may copy a brand, the message may sound helpful, and the timing may match your problem. The goal is usually simple: get your recovery phrase, get you to sign something dangerous, or get you to install something you did not need.
Why transaction verification matters
A blockchain transaction is not just a payment receipt. It can show what address received funds, which network was used, what token moved, and whether you approved spending permission. If you bring support the public address and transaction identifier, they can help you interpret what happened without needing secrets.
Why device checks matter
Wallets depend on the device around them. A clean wallet can be put at risk by a malicious extension, a fake support session, or a browser profile you forgot about. I like to check the environment before typing anything sensitive. If your recovery phrase was exposed, do not waste time trying to make the old wallet safe; create a new wallet in a safer environment and move remaining funds carefully.
Why safe support details matter
Real support does not need your recovery phrase or private key. They can use public blockchain information, app logs you choose to share, and your description of the issue. If a supposed agent asks for secrets, I treat that as the incident, not as support.
When should you escalate immediately?
Escalate quickly if funds moved without your approval, you shared a recovery phrase, you approved an unfamiliar contract, or a support impersonator controlled your screen. In those cases, stop chatting, document what happened, and move any remaining funds only from a safer setup. If nothing moved and no secret was shared, slow troubleshooting is usually safer than rushed action.
Questions and answers
- Is my wallet compromised if my balance disappeared?
Not always. First check the account, network, hidden token settings, and transaction history. If funds moved without your approval or a recovery phrase was exposed, treat it as urgent.
- What should I never send to Exodus, MetaMask, or Trust Wallet support?
Never send a recovery phrase, private key, wallet password, device passcode, or remote access. Support can review public addresses and transaction identifiers without needing the secrets that control your funds.
- What is the safest first step after a suspicious wallet pop-up?
Reject the prompt, disconnect from the site, and avoid reconnecting until you review permissions and the site source. If you already approved something suspicious, check token approvals and consider moving remaining funds from a safer setup.
- How do I verify a transaction before asking for help?
Check the receiving address, network, asset, amount, transaction status, and whether the action was a transfer, swap, or approval. Then share only the public address and transaction identifier with support.