Hardware wallet onboarding · 2026 edition

Start your device the calm way — secure from the very first click.

Trezor.io/start walks you through unboxing, firmware, PIN and recovery backup in the order that keeps your keys yours. No wallet connections here, no forms to fill — just a clear path and the habits worth keeping.

  • Offline key storage by design
  • Verify every address on-screen
  • Plain-English, no jargon walls
Device ready
RECOVERY BACKUP READY
Firmware verified
PIN set locally
  1. 01 Unbox & inspect
  2. 02 Firmware check
  3. 03 Create PIN
  4. 04 Write down backup
BitcoinEthereumLitecoinCardanoSolana PolkadotDogecoinXRPERC-20 tokensBitcoin testnet BitcoinEthereumLitecoinCardanoSolana PolkadotDogecoinXRPERC-20 tokensBitcoin testnet

The path

Four steps from sealed box to self-custody

Work through them in order. Each one closes a gap that attackers rely on, so a few extra minutes here saves a great deal of worry later.

01

Unbox and inspect

Check the seal, the screen, the buttons and the packaging as a whole. A device that arrives already initialised, or with a recovery card filled in, is never a device to trust.

  • Sealed packaging and genuine hologram
  • Screen and buttons responsive
  • Buy from the vendor or a listed reseller
02

Install the official app

Download the companion app from the vendor's own website, then bookmark that page. Search adverts and copycat downloads are one of the oldest tricks in this space.

  • Type the address yourself, once
  • Install on a clean, updated computer
  • Sign the app updates it offers
03

Firmware, then PIN

Let the app install or verify the firmware, and confirm the details on the device screen itself. Then choose a PIN you can recall without writing it down next to anything else.

  • Confirm prompts on the device
  • Unique PIN, not a birthday
  • Never enter the PIN into software
04

Write the recovery backup

Create a new wallet and write the recovery words on paper, offline. This is the one thing that restores your funds, so it deserves more care than any password you have ever set.

  • Paper or metal, never a phone photo
  • Stored away from the device
  • Mindful of fire, water and visitors

Nobody legitimate will ever ask for your recovery words. No support desk, no live chat, no "migration" page, no giveaway. If a site requests them, close the tab.

Everyday security

Six habits that carry most of the weight

Hardware helps, but it works best alongside simple routines. These are the ones owners mention most often when they describe a setup they actually keep.

Keep keys offline

The device signs transactions without exposing the private key to your computer or phone.

Verify on-screen

Read the amount and address on the device display, not the one your browser draws.

Test small, first

Send a modest amount, confirm it arrives, then move the rest. Rehearsal beats guesswork.

Update deliberately

Firmware fixes real flaws, but install it from the app and confirm prompts on the device.

Track, don't trade blindly

Know which wallets hold what, and revisit your holdings before acting on any impulse.

Share nothing personal

Keep balances and holdings to yourself. It removes the reason anyone would target you.

Guide · 200 words

Trezor.io/start: a practical starting point for hardware wallet owners

Trezor.io/start is the practical entry point for anyone setting up a hardware wallet for the first time. The sequence is simple, yet the order matters more than speed: unpack the device, confirm the packaging is sealed, and inspect the screen and buttons for anything unusual before you connect it.

During setup you create a new wallet and write the recovery words down on paper, offline. Never photograph them, type them into a website, or store them in cloud notes — that single habit prevents most real-world losses.

Next, install the official companion app on your computer or phone, confirm the firmware details on the device screen, and add a PIN you can recall without writing it beside the backup. Passphrases and hidden wallets are optional extras; understand them before you enable anything.

Once the wallet runs, learn receiving and sending with small test amounts. Verify every address on the device display rather than the browser, and update firmware only through official channels.

Finally, treat recovery as a rehearsal: check that your backup exists, keep it safe from fire and water, and know how you would restore. Steady habits, not shortcuts, keep digital assets yours. Reviewed regularly, this routine takes minutes and protects years of work.

Setup Recovery Self-custody

Questions

Answers people look for before they begin

Where should I download the desktop or mobile app?

Only from the official vendor website, and check the address bar carefully. Bookmark it once and use the bookmark from then on, so a search advert cannot send you to a lookalike download.

Is my crypto actually stored on the device?

No. Coins live on their blockchains. The device holds the private keys that authorise spending, which is why it never needs to be online and why the recovery backup matters so much.

What do I do if the device is lost or damaged?

Restore your backup onto a replacement device, then move funds to a freshly generated wallet if there is any chance the backup was seen by someone else.

Should I buy a second-hand device?

Best avoided. Buy sealed from the vendor or a listed reseller. If a device arrives with a pre-filled recovery card or an already-initialised wallet, treat it as compromised.

Is a passphrase necessary?

It is optional. A passphrase creates a hidden wallet, but lose it and the funds are unrecoverable even with the seed — so only enable it once you understand that trade-off.

How often should I check my setup?

Twice a year is plenty: confirm the backup is legible and dry, the firmware is current, and a small test transaction still works as expected.

Ready when you are

Start at step one and work down the list. Your future self will thank you for the ten quiet minutes.

Go to the setup steps