Your wallet stays your wallet
- REKT CHECK never asks for your seed phrase.
- REKT CHECK never asks for your private key.
- No wallet connection is required to analyze a public address.
- No transaction signature is required to receive a REKT Score.
How it works
- REKT CHECK reads public blockchain data that is already visible to anyone.
- You paste a public wallet address — nothing else is needed.
- Analyzing an address cannot move funds, approve spending or sign anything.
- There is no connect-wallet flow anywhere in the product.
Scam warning
If anyone claiming to represent REKT CHECK asks for your seed phrase or private key, it is a scam. We will never ask, in any channel, for any reason.
Security architecture summary
- Provider API credentials are read server-side only and never shipped to the browser.
- Privileged database operations run server-side with service-role access; the browser never holds those credentials.
- Authoritative leaderboard and Record Book metrics are derived server-side from stored analyses — a client cannot submit a P&L figure, a rank or a record.
- Reward voting is signaling only and cannot move treasury funds.
- Reward distributions are disabled and cannot be executed by this application.
- No treasury credentials, private keys or seed phrases exist in frontend code, and none are accepted or stored anywhere.
- Administrative reward actions require a server-side token compared in constant time, and every action is audit-logged.
We publish this summary without internal specifics or secret values on purpose. Nothing here should be read as a third-party security audit — no such audit has been performed.
Reporting a problem
Found something that looks wrong? Report it through our official X account listed in the footer. Please do not include private keys or seed phrases in any report — we do not want them and cannot use them.