Security Settings


description: Configure security and privacy settings in DropFi

Security Settings

🔐 Password Management

Changing Your Password

  1. Access Security Settings

    • Click DropFi icon → Settings
    • Navigate to Security tab
    • Click "Change Password"
  2. Password Requirements

Password Best Practices

  • Unique: Don't reuse from other sites
  • Complex: Mix of characters, numbers, symbols
  • Long: 12+ characters recommended
  • Memorable: Use passphrases
  • Secure: Never share with anyone

🔒 Auto-Lock Settings

Configure Auto-Lock

Protect your wallet when inactive:

Lock on Browser Close

  • Enable: Locks when browser closes
  • Disable: Stays unlocked between sessions
  • Recommended: Enable for shared computers

🌐 Privacy Settings

Connected Sites Management

Data Collection

What we NEVER collect:

  • ❌ Private keys
  • ❌ Passwords
  • ❌ Transaction details
  • ❌ Personal information

Optional anonymous data:

  • ✓ Feature usage
  • ✓ Error reports
  • ✓ Performance metrics

🛡️ Advanced Security

Enable Hardware Wallet

For maximum security:

  1. Connect Ledger device
  2. Enable in Security → Hardware Wallet
  3. Approve transactions on device
  4. Private keys never leave device

Security Alerts

Get notified about:

  • Suspicious transaction requests
  • New device logins
  • Failed password attempts
  • Unusual activity patterns

📱 Two-Factor Authentication

Setting Up 2FA (Coming Soon)

🔑 Backup & Recovery

Export Private Keys

⚠️ WARNING: Only do this if absolutely necessary!

  1. Settings → Security → Export Keys
  2. Enter password
  3. Choose export format:
    • Encrypted: Password-protected file
    • Plain text: Unencrypted (dangerous)
  4. Save securely offline

Backup Best Practices

  1. Physical backup: Write seed phrase on paper
  2. Multiple copies: Store in different locations
  3. Never digital: Don't store in cloud/email
  4. Test recovery: Verify backup works
  5. Secure storage: Use fireproof safe

🚨 Security Checkup

Regular Security Audit

Monthly Tasks

  • Review connected sites
  • Check for updates
  • Verify backup works
  • Review transaction history
  • Update password if needed

🔐 Permission Management

Site Permissions

Control what DApps can do:

Permission Risk Default
View address Low Allowed
Request signatures Medium Ask each time
Auto-approve small amounts High Disabled
Access transaction history Medium Disabled

Revoke Permissions

  1. Go to Connected Sites
  2. Click site to manage
  3. Toggle permissions
  4. Or disconnect entirely

💡 Security Tips

Daily Habits

  1. Lock when done: Don't leave unlocked
  2. Verify URLs: Check for phishing
  3. Review transactions: Before signing
  4. Update regularly: Install updates

Red Flags 🚩

  • Unexpected permission requests
  • Sites asking for seed phrase
  • Urgent "security" messages
  • Too-good-to-be-true offers
  • Typos in official communications

If Compromised

  1. Transfer funds immediately to new wallet
  2. Revoke all permissions
  3. Change password
  4. Check all accounts
  5. Report to support

🔄 Reset & Recovery

Factory Reset

⚠️ This will delete everything!

  1. Export/backup important data
  2. Settings → Advanced → Reset
  3. Confirm three times
  4. Re-import wallet after

Emergency Contacts


🔒 Remember: Your security is only as strong as your weakest practice. Stay vigilant, keep backups, and never share sensitive information!