[{"data":1,"prerenderedAt":455},["ShallowReactive",2],{"page-\u002Fguides\u002Fhow-to-verify-hardware-wallet-is-genuine":3},{"id":4,"title":5,"body":6,"description":413,"extension":414,"meta":415,"navigation":450,"path":451,"seo":452,"stem":453,"__hash__":454},"content\u002Fguides\u002Fhow-to-verify-hardware-wallet-is-genuine.md","How to Verify Your Hardware Wallet Is Genuine Before You Set It Up",{"type":7,"value":8,"toc":388},"minimark",[9,13,16,21,24,84,88,91,94,98,101,106,129,133,147,151,154,158,161,164,190,193,207,210,213,217,220,223,237,241,267,270,273,277,310,314,339,343],[10,11,12],"p",{},"If your hardware wallet arrived with a PIN already set or a recovery sheet already filled in, do not use it. A tampered or counterfeit device can let an attacker drain every coin you send to it.",[10,14,15],{},"Verifying that a Ledger, Trezor, or Tangem device is genuine takes a few minutes during setup. This guide covers exactly what to check on each brand and what to do if something looks wrong.",[17,18,20],"h2",{"id":19},"short-answer","Short answer",[10,22,23],{},"A genuine hardware wallet asks you to set your own PIN, shows a fresh welcome screen, ships with a blank recovery or backup sheet, and passes a built-in authenticity check during setup. Buy only from the manufacturer's official store or an authorized retailer.",[25,26,27,40],"table",{},[28,29,30],"thead",{},[31,32,33,37],"tr",{},[34,35,36],"th",{},"Red flag",[34,38,39],{},"What it means",[41,42,43,52,60,68,76],"tbody",{},[31,44,45,49],{},[46,47,48],"td",{},"Recovery sheet has words on it",[46,50,51],{},"Someone already generated the seed - treat the device as compromised",[31,53,54,57],{},[46,55,56],{},"Device asks for a PIN on first power-on",[46,58,59],{},"The device was already set up by someone else",[31,61,62,65],{},[46,63,64],{},"No welcome screen",[46,66,67],{},"Firmware may have been replaced",[31,69,70,73],{},[46,71,72],{},"Holographic seal broken or missing (Trezor)",[46,74,75],{},"Packaging may have been opened after manufacturing",[31,77,78,81],{},[46,79,80],{},"Genuine check fails in companion app",[46,82,83],{},"Device may be counterfeit or firmware-modified",[17,85,87],{"id":86},"why-device-authenticity-matters","Why device authenticity matters",[10,89,90],{},"A hardware wallet's job is to keep your private keys offline. If the device itself is compromised - pre-loaded with an attacker's seed, modified firmware, or a fake Secure Element - then the security model breaks before you deposit a single satoshi.",[10,92,93],{},"The most common real-world scenario is not a sophisticated hack. It is a buyer who purchases from an unofficial seller, receives a device that looks factory-sealed, and sets up a wallet on a device that an attacker already controls.",[17,95,97],{"id":96},"ledger-what-to-check","Ledger: what to check",[10,99,100],{},"Ledger devices (Nano S Plus, Nano X, Flex, Stax) go through several verifiable stages during unboxing and setup.",[102,103,105],"h3",{"id":104},"physical-checks","Physical checks",[107,108,109,117,123],"ul",{},[110,111,112,116],"li",{},[113,114,115],"strong",{},"Blank recovery sheet."," Every Ledger ships with blank Recovery Sheets. Ledger never provides a pre-filled 24-word phrase. If words are already written on the sheet, stop and contact Ledger Support.",[110,118,119,122],{},[113,120,121],{},"Welcome screen."," On first power-on, the device must display a welcome message specific to the model (for example, \"Welcome to Ledger Nano X - Press right to continue\" or \"Welcome to Ledger Stax, your digital signer\"). If the device asks for a PIN immediately, it has already been set up by someone else.",[110,124,125,128],{},[113,126,127],{},"No anti-tamper seal on most models."," Ledger generally does not use holographic seals on its packaging. The Secure Element chip provides the real tamper protection, not a sticker. The Ledger Flex may include anti-tamper tape strips, but absence of a seal on other models is normal.",[102,130,132],{"id":131},"software-checks","Software checks",[107,134,135,141],{},[110,136,137,140],{},[113,138,139],{},"Ledger Genuine Check."," During initial setup, the Ledger companion app runs a cryptographic handshake with the device. The Secure Element in a genuine Ledger holds a unique secret key set during manufacturing. The app challenges the device to prove it possesses this key. If the check fails, do not use the device.",[110,142,143,146],{},[113,144,145],{},"Manual re-check."," You can re-run the genuine check at any time through the companion app's settings or by connecting to the \"My Ledger\" section.",[102,148,150],{"id":149},"where-to-buy","Where to buy",[10,152,153],{},"Ledger sells through its official website (ledger.com) and official Amazon storefronts in specific countries including the US, UK, Germany, France, Spain, Italy, Japan, Australia, and others. Ledger also lists authorized retailers on its support pages.",[17,155,157],{"id":156},"trezor-what-to-check","Trezor: what to check",[10,159,160],{},"Trezor devices (Safe 3, Safe 5, Safe 7) use holographic seals, blank backup cards, and Secure Element verification.",[102,162,105],{"id":163},"physical-checks-1",[107,165,166,172,178,184],{},[110,167,168,171],{},[113,169,170],{},"Holographic seal."," The USB-C port on Trezor Safe 3 is covered by a holographic seal. An original design features the Trezor logo; an updated design (from April 2024 onward) includes the UK CA mark. The seal must be intact and firmly attached. Peeling it should leave a \"VOID\" residue on the device - this is expected.",[110,173,174,177],{},[113,175,176],{},"Blank backup cards."," The wallet backup cards inside the box must be completely blank. Trezor Safe 3 ships with either 12-word (2023 version) or 20-word (2024 version) backup cards, depending on manufacturing date. If any card has words pre-printed or pre-written, stop and contact Trezor Support.",[110,179,180,183],{},[113,181,182],{},"No pre-installed firmware."," Every Trezor leaves the factory without firmware. You install the latest version through Trezor Suite during setup. If the device appears to already have firmware installed, it may have been used or modified.",[110,185,186,189],{},[113,187,188],{},"Manufacturing seams are normal."," Slightly rough edges or visible seams on the plastic casing are injection molding artifacts, not signs of tampering.",[102,191,132],{"id":192},"software-checks-1",[107,194,195,201],{},[110,196,197,200],{},[113,198,199],{},"Secure Element authentication."," Trezor Safe 3\u002F5\u002F7 include a Secure Element chip (OPTIGA Trust M). When you first connect the device, both the main MCU and the Secure Element participate in a hardware-level authenticity check that confirms the device is genuine and unmodified.",[110,202,203,206],{},[113,204,205],{},"Firmware signature verification."," Every time the device connects, the bootloader checks the firmware signature. Trezor Suite will only operate with firmware officially signed by SatoshiLabs.",[102,208,150],{"id":209},"where-to-buy-1",[10,211,212],{},"Trezor sells through its official website (trezor.io). The site also offers an expert onboarding session for users who want a guided setup.",[17,214,216],{"id":215},"tangem-what-to-check","Tangem: what to check",[10,218,219],{},"Tangem takes a different approach. There is no screen or USB port - the wallet is a card (or ring) that communicates with your phone via NFC. Verification focuses on the card's hardware security and the setup flow.",[102,221,105],{"id":222},"physical-checks-2",[107,224,225,231],{},[110,226,227,230],{},[113,228,229],{},"Tamper-resistant design."," Tangem cards are made from monolithic materials that are resistant to physical tampering. The cards are rated IP69K for durability against dust, water, electromagnetic pulses, X-rays, and extreme temperatures.",[110,232,233,236],{},[113,234,235],{},"No pre-seeded setup."," When you tap a new Tangem card to your phone, the app should prompt you to create a new wallet. If the card appears to already be configured or asks for an existing access code on first use, it may be a used or tampered unit.",[102,238,240],{"id":239},"software-and-hardware-checks","Software and hardware checks",[107,242,243,249,255,261],{},[110,244,245,248],{},[113,246,247],{},"EAL6+ Secure Element."," Tangem uses a Samsung Semiconductor chip certified to EAL6+ - the same security level used in passports and high-security payment systems. Private keys are generated inside the chip via a True Random Number Generator and never leave the card.",[110,250,251,254],{},[113,252,253],{},"Immutable firmware."," Tangem's firmware is installed at the factory and cannot be updated. This prevents post-manufacturing firmware tampering but also means you should always buy the latest hardware version.",[110,256,257,260],{},[113,258,259],{},"Access code setup."," During onboarding, you set your own access code (minimum 4 characters). After six failed attempts, delays increase progressively up to 45 seconds. A genuine card has no pre-set access code.",[110,262,263,266],{},[113,264,265],{},"Multi-card redundancy."," Tangem sells sets of 2 or 3 cards. Each card holds an identical copy of the private key. If one card is lost or damaged, the remaining cards still work.",[102,268,150],{"id":269},"where-to-buy-2",[10,271,272],{},"Tangem sells through its official website (tangem.com). Buying from third-party marketplaces carries the same tampering risk as any hardware wallet.",[17,274,276],{"id":275},"general-rules-regardless-of-brand","General rules regardless of brand",[278,279,280,286,292,298,304],"ol",{},[110,281,282,285],{},[113,283,284],{},"Buy from the official store or an authorized retailer."," The most common way people end up with a compromised device is purchasing from an unknown third-party seller on a marketplace platform.",[110,287,288,291],{},[113,289,290],{},"Never use a device that ships with a PIN or seed phrase."," No manufacturer ships a wallet with a pre-set PIN or a pre-filled recovery sheet. This is the single most important check.",[110,293,294,297],{},[113,295,296],{},"Run the built-in genuine check during setup."," All three brands have a software or hardware verification step. Do not skip it.",[110,299,300,303],{},[113,301,302],{},"Keep firmware updated after setup."," For Ledger and Trezor, firmware updates patch security vulnerabilities. Tangem's firmware is fixed at the factory, so the hardware version you buy matters.",[110,305,306,309],{},[113,307,308],{},"If something feels wrong, stop and contact support."," It is better to delay setup by a day than to send crypto to a compromised device.",[17,311,313],{"id":312},"what-to-do-if-you-suspect-your-device-is-compromised","What to do if you suspect your device is compromised",[107,315,316,321,327,333],{},[110,317,318],{},[113,319,320],{},"Do not send any crypto to the device.",[110,322,323,326],{},[113,324,325],{},"Contact the manufacturer's support team directly"," through their official website. Do not use phone numbers or email addresses found in the box - those could be part of the scam.",[110,328,329,332],{},[113,330,331],{},"Document what you found"," (photos of the recovery sheet, packaging, error messages).",[110,334,335,338],{},[113,336,337],{},"Request a replacement or refund"," through the official channel where you purchased the device.",[17,340,342],{"id":341},"related-guides","Related guides",[107,344,345,353,360,367,374,381],{},[110,346,347,352],{},[348,349,351],"a",{"href":350},"\u002Fguides\u002Faddress-poisoning-scams-crypto-wallet","Address Poisoning Scams: How to Avoid Sending Crypto to the Wrong Wallet"," - protect yourself from lookalike address attacks after setup.",[110,354,355,359],{},[348,356,358],{"href":357},"\u002Fguides\u002Fseed-phrase-mistakes-that-cost-people-money","Seed Phrase Mistakes That Cost People Money"," - common backup errors and how to avoid them.",[110,361,362,366],{},[348,363,365],{"href":364},"\u002Fguides\u002Fpaper-vs-metal-seed-phrase-backup","Paper vs Metal Seed Phrase Backup"," - choose the right backup medium for your recovery phrase.",[110,368,369,373],{},[348,370,372],{"href":371},"\u002Fguides\u002Fbest-hardware-wallet-for-beginners","Best Hardware Wallet for Beginners"," - compare Tangem, Ledger, and Trezor for a first wallet.",[110,375,376,380],{},[348,377,379],{"href":378},"\u002Fguides\u002Fhardware-wallet-firmware-updates","Hardware Wallet Firmware Updates: What to Check Before You Click Update"," - when to update and when to pause.",[110,382,383,387],{},[348,384,386],{"href":385},"\u002Fguides\u002Fshould-you-keep-crypto-on-an-exchange","Should You Keep Crypto on an Exchange or Move It to a Wallet?"," - decide when self-custody makes sense.",{"title":389,"searchDepth":390,"depth":390,"links":391},"",2,[392,393,394,400,405,410,411,412],{"id":19,"depth":390,"text":20},{"id":86,"depth":390,"text":87},{"id":96,"depth":390,"text":97,"children":395},[396,398,399],{"id":104,"depth":397,"text":105},3,{"id":131,"depth":397,"text":132},{"id":149,"depth":397,"text":150},{"id":156,"depth":390,"text":157,"children":401},[402,403,404],{"id":163,"depth":397,"text":105},{"id":192,"depth":397,"text":132},{"id":209,"depth":397,"text":150},{"id":215,"depth":390,"text":216,"children":406},[407,408,409],{"id":222,"depth":397,"text":105},{"id":239,"depth":397,"text":240},{"id":269,"depth":397,"text":150},{"id":275,"depth":390,"text":276},{"id":312,"depth":390,"text":313},{"id":341,"depth":390,"text":342},"Buying a Ledger, Trezor, or Tangem? Learn the physical and software checks that catch a tampered or counterfeit device before you send any crypto to it.","md",{"publishedAt":416,"updatedAt":416,"schemaType":417,"offers":418,"sourceNotes":437,"faqs":440},"May 11, 2026","Article",[419,424,431],{"referralName":420,"referralUrl":421,"offerCta":422,"offerHeadline":422,"offerDescription":423},"Tangem","https:\u002F\u002Ftangem.com\u002Finvite\u002FQ29LSP","Visit Tangem","Open the Tangem link to check current wallet pricing and availability.",{"referralName":425,"showReferralCode":426,"referralUrl":427,"offerCta":428,"offerHeadline":429,"offerDescription":430},"Ledger",false,"https:\u002F\u002Fshop.ledger.com\u002F?r=72ebcfe0d28e","Visit Ledger","Shop Ledger hardware wallets","Visit the official Ledger store through this link to check current hardware wallet options.",{"referralName":432,"referralUrl":433,"offerCta":434,"offerHeadline":435,"offerDescription":436},"Trezor","https:\u002F\u002Faffil.trezor.io\u002Faff_c?offer_id=352&aff_id=135545","Visit Trezor","Shop Trezor hardware wallets","Visit the official Trezor store through this link to check current hardware wallet options.",[438,439],"We checked official Ledger support pages on device genuineness and recovery-sheet checks, Trezor guides on holographic seal and Secure Element authentication for Safe 3\u002F5\u002F7, and Tangem security-feature documentation before publishing.","The core principle across all three brands: a genuine device ships with no pre-set PIN, no pre-filled seed\u002Fbackup, and passes a software or hardware authenticity check during setup.",[441,444,447],{"question":442,"answer":443},"Is it safe to buy a hardware wallet from Amazon?","Yes, if you buy from the manufacturer's official Amazon storefront. Ledger lists its authorized Amazon stores by country on its support pages. Trezor and Tangem also sell through their official websites. Avoid unknown third-party sellers on marketplace platforms.",{"question":445,"answer":446},"What if my hardware wallet already has a PIN or seed phrase when I open it?","Stop immediately. A genuine device never ships with a pre-set PIN or a pre-filled recovery sheet. Contact the manufacturer's support team and do not send any crypto to the device.",{"question":448,"answer":449},"Can a hardware wallet be hacked after I verify it is genuine?","Hardware wallets are designed to keep private keys offline, but no device eliminates all risk. Keeping firmware updated, verifying transactions on the device screen, and protecting your seed phrase remain essential after setup.",true,"\u002Fguides\u002Fhow-to-verify-hardware-wallet-is-genuine",{"title":5,"description":413},"guides\u002Fhow-to-verify-hardware-wallet-is-genuine","aPHUUmiUEoemXoJycL2Mnb-YJ8Y2jJmQxUSzZ9GI1N8",1780719483375]