Your wallet stays your wallet

  • REKT CHECK never asks for your seed phrase.
  • REKT CHECK never asks for your private key.
  • No wallet connection is required to analyze a public address.
  • No transaction signature is required to receive a REKT Score.

How it works

  • REKT CHECK reads public blockchain data that is already visible to anyone.
  • You paste a public wallet address — nothing else is needed.
  • Analyzing an address cannot move funds, approve spending or sign anything.
  • There is no connect-wallet flow anywhere in the product.

Scam warning

If anyone claiming to represent REKT CHECK asks for your seed phrase or private key, it is a scam. We will never ask, in any channel, for any reason.

Security architecture summary

  • Provider API credentials are read server-side only and never shipped to the browser.
  • Privileged database operations run server-side with service-role access; the browser never holds those credentials.
  • Authoritative leaderboard and Record Book metrics are derived server-side from stored analyses — a client cannot submit a P&L figure, a rank or a record.
  • Reward voting is signaling only and cannot move treasury funds.
  • Reward distributions are disabled and cannot be executed by this application.
  • No treasury credentials, private keys or seed phrases exist in frontend code, and none are accepted or stored anywhere.
  • Administrative reward actions require a server-side token compared in constant time, and every action is audit-logged.

We publish this summary without internal specifics or secret values on purpose. Nothing here should be read as a third-party security audit — no such audit has been performed.

Reporting a problem

Found something that looks wrong? Report it through our official X account listed in the footer. Please do not include private keys or seed phrases in any report — we do not want them and cannot use them.

Privacy · Transparency