Security
End-to-End Encryption with AES-256
Keechain employs Advanced Encryption Standard (AES) with a 256-bit key length (AES-256) to safeguard all sensitive user data. This encryption standard is widely recognized for its robustness and is used in various secure applications, including blockchain wallets and password managers .
Private Key Protection: User private keys are encrypted using AES-256 before storage, ensuring that even if storage is compromised, the keys remain secure.
Local Encryption: All encryption and decryption processes occur locally on the user's device. Keechain does not transmit or store unencrypted sensitive data.
On-Chain Data Handling
Keechain is designed to operate fully on-chain, meaning:
No Off-Chain Storage: Sensitive operations and data storage are conducted on the blockchain, reducing reliance on centralized servers and minimizing potential attack vectors.
Immutable Records: Transactions and critical data are recorded on the blockchain, providing transparency and resistance to tampering.
Smart Contract Integration: Keechain interacts with smart contracts for operations like asset bridging and swaps, ensuring that these processes are transparent and verifiable.
User Privacy and Data Sovereignty
Keechain is committed to preserving user privacy
No Access to Sensitive Data: Keechain's architecture ensures that it never accesses or stores unencrypted user data. All sensitive information remains under the user's control.
Minimal Permissions: The application operates with the least privileges necessary, reducing the potential attack surface and enhancing security.
Compliance with Standards: Keechain adheres to industry best practices for security and privacy, aligning with standards used by secure applications like iCloud Keychain
Phishing Protection
To protect users from phishing attacks:
Domain Verification: Keechain verifies the authenticity of connected domains, warning users if they interact with suspicious or known malicious sites.
User Alerts: The application provides real-time alerts and guidance if potential phishing attempts are detected, helping users avoid compromising their credentials.
Continuous Updates: Keechain maintains an updated list of known phishing sites and integrates community-reported threats to enhance protection.
Last updated