imtoken will never ask for your seed phrase, private key or verification code. Always review the address, network and request details before transferring, signing or approving.

imtoken

Approval Security

Approval security comes down to who can spend, how much they can spend and whether that permission is still needed.

Verify the networkReview the requestKeep verifiable records
Check 1

Identify the spender

Identify the spender is a practical part of understanding Approval Security. Approval security comes down to who can spend, how much they can spend and whether that permission is still needed. Before acting, confirm that the active account, target network and intended outcome all match, then review the parameters shown in the request.

Identify the spender within Approval Security is not an isolated feature. In practice it is shaped by network state, account permissions, transaction parameters and user decisions. Understanding those relationships first makes similar-looking screens and labels much less confusing.

For Identify the spender, a repeatable sequence is useful: verify the source and network, check the address or contract, review the amount, permission or fee, and keep a transaction hash when one is created. This does not remove every risk, but it makes decisions easier to explain and problems easier to trace.

Practical checks

  • Verify the network and account before working with identify the spender
  • Double-check important addresses, contracts, amounts or permissions
  • Never send a seed phrase, private key or verification code to anyone
Check 2

Control allowance

Control allowance is a practical part of understanding Approval Security. Approval security comes down to who can spend, how much they can spend and whether that permission is still needed. Before acting, confirm that the active account, target network and intended outcome all match, then review the parameters shown in the request.

A useful way to think about Control allowance within Approval Security is to separate what the interface displays from what the blockchain records. The wallet organizes information and submits requests, while the target network records the resulting state. Addresses, networks, contracts and transaction hashes are therefore important verification points.

For Control allowance, a repeatable sequence is useful: verify the source and network, check the address or contract, review the amount, permission or fee, and keep a transaction hash when one is created. This does not remove every risk, but it makes decisions easier to explain and problems easier to trace.

Practical checks

  • Verify the network and account before working with control allowance
  • Double-check important addresses, contracts, amounts or permissions
  • Never send a seed phrase, private key or verification code to anyone
Check 3

Review old approvals

Review old approvals is a practical part of understanding Approval Security. Approval security comes down to who can spend, how much they can spend and whether that permission is still needed. Before acting, confirm that the active account, target network and intended outcome all match, then review the parameters shown in the request.

The risky part of Review old approvals within Approval Security is often the surrounding context rather than the button itself: which network is active, which site initiated the request, what permission is being granted, and whether the amount and fee make sense. Turning those checks into a routine is more reliable than reacting to prompts one by one.

For Review old approvals, a repeatable sequence is useful: verify the source and network, check the address or contract, review the amount, permission or fee, and keep a transaction hash when one is created. This does not remove every risk, but it makes decisions easier to explain and problems easier to trace.

Practical checks

  • Verify the network and account before working with review old approvals
  • Double-check important addresses, contracts, amounts or permissions
  • Never send a seed phrase, private key or verification code to anyone
Check 4

Revoke unused access

Revoke unused access is a practical part of understanding Approval Security. Approval security comes down to who can spend, how much they can spend and whether that permission is still needed. Before acting, confirm that the active account, target network and intended outcome all match, then review the parameters shown in the request.

imtoken guidance focuses on information you can verify. When something is unclear, do not rely on a single line in a pop-up. Check the address, network, contract, transaction history and explorer data where relevant, then decide whether the action matches your intent.

For Revoke unused access, a repeatable sequence is useful: verify the source and network, check the address or contract, review the amount, permission or fee, and keep a transaction hash when one is created. This does not remove every risk, but it makes decisions easier to explain and problems easier to trace.

Practical checks

  • Verify the network and account before working with revoke unused access
  • Double-check important addresses, contracts, amounts or permissions
  • Never send a seed phrase, private key or verification code to anyone

Security statement

Seed phrases and private keys remain under the user’s control. Official personnel will not ask for them or for verification codes; on-chain transactions generally cannot be reversed by a wallet alone; third-party DApps and smart contracts may carry risk.

imtoken

Ready to get started?

The download entry always goes through the dedicated download page. Keep verifying networks, addresses and request details before acting.

Download imtoken