Overview
HPX Web3 App is committed to providing bank-level security for users' digital assets. Through a security architecture that combines software and hardware with multi-layered protection, it safeguards users' private keys, transactions, and interactions. This documentation summarizes all the security features currently available in the application, covering all aspects of wallet management, transaction protection, DApp access security, and more.
Core Security Features
Multi-Dimensional Environment Security Detection
- Root/Jailbreak detection
- Third-party library information collection
- Anti-emulator defense
- Mobile device collection risk analysis
- Network security detection
- Phishing SMS/email analysis
- UI spoofing detection
- Clipboard security monitoring
- Screen recording detection
Dual Encryption Communication & Private Key Protection
- Combines post-quantum encryption + traditional encryption for communication, ensuring future quantum resistance and current compatibility.
- Private keys are stored locally with robust security measures.
Token Asset Risk Detection
- Rapid proactive detection upon launching the app.
- Covers 1.11M+ audited tokens, with 545K+ identified as risky tokens.
- Detection includes contract, transaction, and information security checks.
Authorization Risk Management
- Comprehensive detection of authorized contract information.
- One-click revocation of risky approvals.
- Proactive blocking of dangerous authorizations.
Hardware Security Support
- Hardware Wallet Connection: Compatible with devices like Sealer2100, ensuring private keys are isolated and stored in a secure element (SE).
- Multi-Factor Verification: Combines hardware signing with biometrics (fingerprint/facial recognition) or passwords for dual verification to prevent misoperations.
DApp Security Protection
- DApp Security Detection: Automatically checks the security of DApp contracts before connecting or authorizing, identifying high-risk or malicious DApps and alerting users to proceed with caution.
- Authorization Management Center: Centrally view, manage, and revoke various permissions granted to DApps, preventing long-term exposure risks.
Transaction Security Protection
- Blacklisted Address Detection: Automatically checks whether a recipient address is in a known blacklist database before initiating a transfer, preventing funds from being sent to fraudulent or illegal addresses.
- KYT Risk Transaction Alerts: Utilizes a Know Your Transaction (KYT) risk control model to assess the risk level of transaction history and on-chain associations, detecting and alerting users to high-risk or severely risky transactions.
- Transaction Pre-Execution: Simulates transactions locally or in a test environment before officially submitting them to the blockchain, verifying security, success probability, and estimating outcomes.
Multi-Identity and Access Control
- Multi-Signature Wallets: Supports multi-signature mechanisms, requiring multiple private key signatures to complete a transaction, enhancing fund security.
Comments
0 comments
Please sign in to leave a comment.