Crypto wallets

Introduction

A crypto wallet is a tool that helps users manage the cryptographic keys that control cryptocurrency on a blockchain. Despite the name, a wallet does not usually store digital coins in the same way a physical wallet stores cash.

Instead, the assets remain on the blockchain. The wallet helps users view addresses, approve transactions, and prove control with private keys.

This difference matters because cryptocurrency custody creates risks that investors do not face in the same way with a conventional brokerage account.

How does a crypto wallet work?

A wallet creates or manages cryptographic keys. Users can share a public address so that others can send assets to it. Meanwhile, the private key allows the holder to approve transactions from that address.

Many wallets also use a recovery phrase, often called a seed phrase, to restore access to a group of keys. As a result, anyone who gets that phrase may be able to recreate the wallet and transfer its assets.

For more background on blockchain addresses and keys, see what a cryptocurrency is.

Custodial versus non-custodial wallets

Characteristic Custodial Non-custodial
Who controls the keys? A platform or custodian The user
Account recovery May offer conventional recovery processes Usually depends on the user’s backup or recovery phrase
Main advantage Can be simpler to use Direct control over blockchain assets
Main risk Counterparty, platform, and account-security risk Loss, theft, or misuse of private keys

Neither approach removes all risk. With a custodial wallet, a third party takes responsibility for the keys. By contrast, self-custody places more responsibility on the individual user.

Hot wallets

A hot wallet runs on an internet-connected device, such as a smartphone or computer. Browser-extension wallets also fall into this general category.

Hot wallets can be convenient for frequent transactions and blockchain applications. However, internet-connected devices can face malware, phishing, harmful browser extensions, and other attacks.

Therefore, security depends on more than the wallet software. The security of the device and the user’s actions matter as well.

Cold wallets and hardware wallets

Cold storage keeps private keys away from internet-connected environments. For example, hardware wallets can approve transactions while keeping sensitive key information separate from the connected computer or phone.

However, a hardware wallet does not remove every risk. Users can still approve a harmful transaction, lose their recovery phrase, buy a compromised device, or make mistakes during setup.

Physical security matters too. For instance, storing a recovery phrase in an unsafe place can weaken the protection that the hardware device provides.

What is a seed phrase?

A seed phrase is a sequence of words that can restore a wallet’s private keys. In simple terms, it acts as a master backup for many wallet designs.

If users lose their device but still have the correct recovery phrase, they can often restore the wallet with compatible software or hardware. However, if they lose both wallet access and the recovery phrase, no central company may be able to restore the assets.

The opposite risk matters as well. Anyone who gets the phrase may be able to take control of the wallet. Therefore, users should treat a seed phrase as highly sensitive security information.

Common crypto wallet mistakes

Sending to the wrong address

Users may not be able to reverse a blockchain transaction after sending it. Therefore, an incorrect address or incompatible network can lead to permanent loss.

Exposing a recovery phrase

Entering a seed phrase into a fake website, message, or harmful application can give an attacker control of the wallet.

Approving harmful transactions

Users can lose tokens when they approve transactions or smart-contract requests they do not fully understand.

Poor backup practices

A damaged device or lost backup can create permanent problems if the user has no other secure way to restore the wallet.

Wallets and blockchain networks

A wallet may support several blockchains. However, that does not mean users can send every asset across every network. Before making a transfer, they should confirm the asset, address, and network.

This is especially important for tokens such as stablecoins, which can exist on several blockchain networks. For example, sending a token through an unsupported network can make recovery difficult or impossible.

In addition, transaction fees differ by network and can change when network activity rises.

Wallet security and scams

Crypto users are common targets for phishing. Attackers may pretend to represent wallet providers, exchanges, support teams, or crypto projects. Their goal is often to steal passwords, private keys, or seed phrases.

Legitimate services should not need a user’s recovery phrase simply to provide normal customer support. Therefore, an unexpected request for a seed phrase is a major warning sign.

Users should also check software sources carefully. Fake wallet applications and browser extensions, for instance, may try to steal crypto assets.

Which type of wallet is appropriate?

The main tradeoff is between convenience, control, and security responsibility. A custodial account can make key management easier, but it requires users to rely on the custodian. Meanwhile, a hot wallet offers flexibility but stays connected to an internet-enabled device. Cold storage can reduce some online risks, although it requires careful backup and transaction habits.

No wallet structure removes every risk. Therefore, the right setup depends on how someone uses cryptocurrency, their technical knowledge, and the risks they are willing and able to manage.

Finally, custody is only one part of the broader risks of cryptocurrency investing.

Key takeaways

  • Crypto wallets manage the keys that control blockchain assets rather than storing coins inside the wallet itself.
  • Custodial wallets rely on a third party, while non-custodial wallets give users direct control of their private keys.
  • Hot wallets connect to the internet, while cold storage keeps keys away from online environments.
  • A seed phrase can often restore a wallet, so users should protect it as carefully as their private keys.
  • Wrong addresses, phishing, harmful approvals, and poor backups can lead to permanent losses.
  • Self-custody provides more control but also gives the user more security responsibility.