Skip to content

Written to be checked, not believed.

Only you can touch your money. This page explains exactly why that's true — how the key works, what we can and cannot do, and how recovery happens if you lose your phone. Check any of it.

Know more

Your device passkey is the only key

When you create your account, your phone generates a key inside the same secure chip that protects your bank apps. It never leaves that chip — not to us, not to anyone. Your face or fingerprint unlocks it; the key itself signs.

  • Nothing to phish

    There is no password to steal and no code to trick out of you. The key can't be typed, told, or copied.

  • Nothing for us to lose

    We never hold your key, so no breach of ours can expose it. A hack of Enta cannot move your money.

  • An open standard

    Built on WebAuthn — the same passkey standard used by Google, Apple, and major banks. Not our invention; an industry standard you can read about anywhere.

What we cannot do and what we do

We cannot — by design, not policy

  • Move or access your digital assets.
  • See or reconstruct your passkey.
  • Approve a transaction for you.
  • Change your recovery setup without your knowledge.

* These aren't promises we keep — they're things the architecture makes impossible for us.

We do — and say so plainly

  • Run the infrastructure your transactions travel on.
  • Watch market rates and inform you.
  • Screen transactions for fraud and hold flagged flows for review.
  • Verify identity where the law requires it

Lose your device. Keep your money.

No seed phrase. You verify your identity on a new device, and a recovery process replaces your old key with a new one — inside sealed hardware we cannot open, even if ordered to.

Every recovery is announced to your registered contacts the moment it starts. A recovery you didn't ask for can be cancelled with one tap.

Get started

Resources

  • Verify on-chain

    Your account is a smart account on a public blockchain. Look it up yourself — the ownership structure this page describes is visible on-chain.

  • Live status

    Our systems' health, publicly visible — including incidents, not just uptime.

  • Found something?

    Security researchers: we want to hear from you. Responsible disclosure gets a response, not a lawyer.

    Email security@entashiga.io