{"id":7407,"date":"2022-11-29T05:30:46","date_gmt":"2022-11-29T05:30:46","guid":{"rendered":"https:\/\/cyberscrilla.com\/staging\/4768\/?p=7407"},"modified":"2022-11-29T05:30:52","modified_gmt":"2022-11-29T05:30:52","slug":"how-to-keep-metamask-secure","status":"publish","type":"post","link":"https:\/\/cyberscrilla.com\/staging\/4768\/how-to-keep-metamask-secure\/","title":{"rendered":"How to Keep MetaMask Secure from Hackers (11 Practical Steps)"},"content":{"rendered":"\n<p>Knowing how to keep your MetaMask wallet secure from hackers is essential to protect your digital assets. Failing to secure your wallet could lead to your assets being stolen and all of your funds drained.&nbsp;<\/p>\n\n\n\n<p>Having used MetaMask for years myself, I\u2019ve developed a list of actionable steps you can take to keep your MetaMask wallet safe from hackers.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">How to Keep Your MetaMask Wallet Safe<\/h2>\n\n\n\n<h3 class=\"wp-block-heading\">1. Only download MetaMask from the official site<\/h3>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"708\" src=\"https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/Download-MetaMask-1024x708.png\" alt=\"MetaMask's official website.\" class=\"wp-image-7421\" srcset=\"https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/Download-MetaMask-1024x708.png 1024w, https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/Download-MetaMask-300x208.png 300w, https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/Download-MetaMask-768x531.png 768w, https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/Download-MetaMask.png 1200w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><figcaption class=\"wp-element-caption\">MetaMask&#8217;s official website<\/figcaption><\/figure>\n\n\n\n<p>Let&#8217;s start with the basics. <strong>The only place you should download both the MetaMask extension and mobile app is the official website, which is <\/strong><a href=\"http:\/\/metamask.io\" target=\"_blank\" rel=\"noreferrer noopener\"><strong>MetaMask.io<\/strong><\/a><strong>.<\/strong><\/p>\n\n\n\n<p>If you download this wallet from any other location\u2014even your mobile device\u2019s app store\u2014you\u2019re putting your funds at extreme risk. <\/p>\n\n\n\n<p>Downloading a fake MetaMask wallet is the quickest way to get scammed.<\/p>\n\n\n\n<p>The moment you fund your wallet, you\u2019ll actually be funding someone else\u2019s pocket. <\/p>\n\n\n\n<p>Be sure to double-check that you\u2019re visiting the correct URL, especially if you type it into Google search as it could result in a fake website.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">2. Create a secure password<\/h3>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"708\" src=\"https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/Create-a-strong-MetaMask-password-1024x708.png\" alt=\"Components of a strong password.\" class=\"wp-image-7422\" srcset=\"https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/Create-a-strong-MetaMask-password-1024x708.png 1024w, https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/Create-a-strong-MetaMask-password-300x208.png 300w, https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/Create-a-strong-MetaMask-password-768x531.png 768w, https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/Create-a-strong-MetaMask-password.png 1200w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><figcaption class=\"wp-element-caption\">Components of a strong password<\/figcaption><\/figure>\n\n\n\n<p>When you <a href=\"https:\/\/cyberscrilla.com\/staging\/4768\/metamask-wallet-complete-user-guide\/\" target=\"_blank\" rel=\"noreferrer noopener\">create your MetaMask<\/a> password make sure that it\u2019s secure as can be. If you create a password that\u2019s so complicated you can\u2019t even remember it, that\u2019s okay. <\/p>\n\n\n\n<p>You should create a password that you\u2019ve never used before.<\/p>\n\n\n\n<p>Moreover, make sure to use upper and lower case letters, various numbers, and symbols. The more random your password is the better. <\/p>\n\n\n\n<p>That said, it\u2019s best not to use words. Instead, keep it completely random and write your password down on a piece of paper and store it in a safe location.\u00a0<\/p>\n\n\n\n<p>Never store your password online or on your device. Hackers can gain access to it if your device is compromised. <\/p>\n\n\n\n<p>Don\u2019t worry if you forget or lose your password though, you can always reset it using your <a href=\"https:\/\/cyberscrilla.com\/staging\/4768\/recover-metamask-wallet-with-seed-phrase\/\" target=\"_blank\" rel=\"noreferrer noopener\">wallet\u2019s secret recovery phrase<\/a>. <\/p>\n\n\n\n<p>Believe me, I\u2019ve done this several times.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">3. Store your seed phrase offline<\/h3>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"708\" src=\"https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/Store-your-seed-phrase-offline-1024x708.png\" alt=\"Store your seed phrase offline.\" class=\"wp-image-7423\" srcset=\"https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/Store-your-seed-phrase-offline-1024x708.png 1024w, https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/Store-your-seed-phrase-offline-300x208.png 300w, https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/Store-your-seed-phrase-offline-768x531.png 768w, https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/Store-your-seed-phrase-offline.png 1200w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><figcaption class=\"wp-element-caption\">Metal seed phrase plate<\/figcaption><\/figure>\n\n\n\n<p>Your wallet\u2019s seed phrase (secret recovery phrase) is the key to accessing your funds. Anyone who knows your seed phrase has full access and control over your wallet.&nbsp;<\/p>\n\n\n\n<p>This phrase is given to you when you create a new MetaMask wallet. You must record this phrase in the exact order as it\u2019s displayed during the creation of your wallet. <\/p>\n\n\n\n<p>Similar to your password, you should never store your secret recovery phrase anywhere online.<\/p>\n\n\n\n<p>A good option is to write your phrase down on a piece of paper (preferably multiple pieces of paper) and store it in various locations that you have access to, but are still safe. <\/p>\n\n\n\n<p>If you don\u2019t have a <a href=\"https:\/\/amzn.to\/3iiB4FN\" target=\"_blank\" rel=\"noreferrer noopener\">fireproof safe at home<\/a>, I highly suggest you get one and store it there.<\/p>\n\n\n\n<p>For further protection and longevity, I can\u2019t recommend a <a href=\"https:\/\/amzn.to\/3VAFdn2\" target=\"_blank\" rel=\"noreferrer noopener\">fireproof seed storage plate<\/a> enough. <\/p>\n\n\n\n<p>A piece of paper works fine. But recording your phrase on a nice chunk of metal ensures your phrase remains legible even in the harshest conditions.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">4. Never share your seed phrase<\/h3>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"708\" src=\"https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/Fake-MetaMask-support-on-Twitter-1024x708.png\" alt=\"Fake MetaMask support messages.\" class=\"wp-image-7424\" srcset=\"https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/Fake-MetaMask-support-on-Twitter-1024x708.png 1024w, https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/Fake-MetaMask-support-on-Twitter-300x208.png 300w, https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/Fake-MetaMask-support-on-Twitter-768x531.png 768w, https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/Fake-MetaMask-support-on-Twitter.png 1200w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><figcaption class=\"wp-element-caption\">Scam comments on Twitter<\/figcaption><\/figure>\n\n\n\n<p>After securing your seed phrase make sure to never share it with anyone. Not your mom, your bank teller, your CPA, and especially not \u201cMetaMask Support\u201d.<\/p>\n\n\n\n<p>First off, the real MetaMask Support would never ask you for your secret phrase. If they do, they\u2019re not the real support. This is a common scam.<\/p>\n\n\n\n<p>The only reason someone would need to know your seed phrase is to access your wallet\u2019s funds. <\/p>\n\n\n\n<p>All transactions executed via your wallet can be viewed publicly on the blockchain, hence, no one would ever need your secret phrase to view such data.\u00a0<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">5. Don\u2019t connect your wallet to random websites<\/h3>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"708\" src=\"https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/NFT-phishing-links-on-Twitter-1024x708.png\" alt=\"Phishing links in my Twitter DM.\" class=\"wp-image-7425\" srcset=\"https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/NFT-phishing-links-on-Twitter-1024x708.png 1024w, https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/NFT-phishing-links-on-Twitter-300x208.png 300w, https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/NFT-phishing-links-on-Twitter-768x531.png 768w, https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/NFT-phishing-links-on-Twitter.png 1200w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><figcaption class=\"wp-element-caption\">Phishing links in my Twitter DM<\/figcaption><\/figure>\n\n\n\n<p>One of the most common <a href=\"https:\/\/cyberscrilla.com\/staging\/4768\/how-does-metamask-get-hacked\/\" target=\"_blank\" rel=\"noreferrer noopener\">ways MetaMask wallets are hacked<\/a> is through a phishing link. These links direct you to a malicious website, that once connected, will drain your entire wallet.<\/p>\n\n\n\n<p>These links can appear almost anywhere, but the most common places are Twitter, Discord, and Instagram DMs and posts, emails, and spammy websites.<\/p>\n\n\n\n<p>Unless you are absolutely certain the site you\u2019re connecting to can be trusted, you should never connect your wallet to a random site. <\/p>\n\n\n\n<p>If you want to risk it, perhaps you should consider getting a separate wallet (we\u2019ll discuss this later) for situations like this.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">6. Always disconnect MetaMask from dapps<\/h3>\n\n\n\n<p>Even if you are connected to a trusted website or decentralized application (dapp), there\u2019s no guarantee that it can\u2019t be hacked. <\/p>\n\n\n\n<p>That\u2019s why it\u2019s important to always disconnect MetaMask from dapps when you are done.<\/p>\n\n\n\n<p>How do you disconnect MetaMask from websites? Follow the steps below.<\/p>\n\n\n\n<figure class=\"wp-block-image\"><img decoding=\"async\" src=\"https:\/\/lh5.googleusercontent.com\/7BzTCbhQrl_MGhjuKVG1g1Anw4PJuL_gsiJUHTmLkqsLOR6Zmr1Caq1zMDcerS6n5i58svmOSHKXiHtyzWkNCt4KyWeeYMzp-mFy3BpylyAIj5Bgd1xCHGkKXZRqrS0c0GxE23LOpNv7GNfKYz5dTJTYPkqRUulTJCjl_P9hBGU-EHifKiMxfap-drVnCQ\" alt=\"3 steps to disconnect MetaMask mobile from a website.\"\/><\/figure>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>MetaMask Mobile:<\/strong> In the app click on the hamburger icon and go to Settings, Security &amp; Privacy, scroll down and tap Clear Privacy Data.<\/li>\n<\/ul>\n\n\n\n<figure class=\"wp-block-image\"><img decoding=\"async\" src=\"https:\/\/lh3.googleusercontent.com\/w3KJSxIZMKFqiSVddnoqGoeq58rdebYU-IZqykCXNA2q3AE7hxx5XsaVT4Kx82wsOtYbuxMerpmlTqEszhy3i1Yob-eQrTIeFKsqQrakwufmseAM0bQuCoQm6tj1nzGXQDrmVqaDWjbYC-K9e_NwE1e_VLgTlDcZWcCJFaucKluYBPQ67u0qFplVNq5h0w\" alt=\"3 steps to disconnect MetaMask extension from a website.\"\/><\/figure>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>MetaMask Extension:<\/strong> Within the Account view, tap the 3 dots button in the top right-hand corner. In the expanded menu, click on Connected Sites. To disconnect from the listed sites, tap the trash can button next to the site.<\/li>\n<\/ul>\n\n\n\n<h3 class=\"wp-block-heading\">7. Don\u2019t access MetaMask on public wifi<\/h3>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"708\" src=\"https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/Proton-VPN-and-MetaMask-1024x708.png\" alt=\"Using Proton VPN to secure my network\" class=\"wp-image-7428\" srcset=\"https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/Proton-VPN-and-MetaMask-1024x708.png 1024w, https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/Proton-VPN-and-MetaMask-300x208.png 300w, https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/Proton-VPN-and-MetaMask-768x531.png 768w, https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/Proton-VPN-and-MetaMask.png 1200w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><figcaption class=\"wp-element-caption\">Using Proton VPN to secure my network<\/figcaption><\/figure>\n\n\n\n<p>Connecting your computer or mobile device to a public wifi network is always a huge risk, especially if you want to keep your MetaMask account secure.<\/p>\n\n\n\n<p>A public wifi network enables hackers to closely monitor all file sharing and traffic that\u2019s sent between you and the server. <\/p>\n\n\n\n<p>Using this data, a good hacker can inject malicious JavaScript into your device leading it and your wallet to be compromised.<\/p>\n\n\n\n<p>If you must use a public wifi network or if you simply enjoy sitting at the cafe, you should <a href=\"https:\/\/fave.co\/3C6T8KT\" target=\"_blank\" rel=\"noreferrer noopener\">use a virtual private network<\/a> (VPN) to keep all your data encrypted so hackers can\u2019t see what\u2019s going on.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">8. Adjust these recommended security settings<\/h3>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"708\" src=\"https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/MetaMask-recommended-security-settings-1024x708.png\" alt=\"MetaMask recommended security settings.\" class=\"wp-image-7429\" srcset=\"https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/MetaMask-recommended-security-settings-1024x708.png 1024w, https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/MetaMask-recommended-security-settings-300x208.png 300w, https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/MetaMask-recommended-security-settings-768x531.png 768w, https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/MetaMask-recommended-security-settings.png 1200w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p>MetaMask has a ton of security features that can be changed to make your wallet even more secure. <\/p>\n\n\n\n<p><strong>Many of these features may already be disabled\/enabled, but it\u2019s worth checking.<\/strong><\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Settings, Advanced, <strong>disable Enhanced Token Detection<\/strong>.<\/li>\n\n\n\n<li>Settings, Security &amp; Privacy, <strong>set Auto-lock to immediately<\/strong>.<\/li>\n\n\n\n<li>Settings, Security &amp; Privacy, <strong>disable Remember me<\/strong>.<\/li>\n\n\n\n<li>Settings, Security &amp; Privacy, <strong>clear privacy data, browser history, and cookies at regular intervals.<\/strong><\/li>\n\n\n\n<li>Settings, Security &amp; Privacy, <strong>Enable Privacy mode<\/strong>.<\/li>\n\n\n\n<li>Settings, Security &amp; Privacy, <strong>disable Participate in MetaMetrics<\/strong>.<\/li>\n\n\n\n<li>Settings, Security &amp; Privacy, <strong>disable Get incoming transactions<\/strong>.<\/li>\n\n\n\n<li>Settings, Security &amp; Privacy, <strong>disable Opensea API<\/strong>.<\/li>\n\n\n\n<li>Settings, Security &amp; Privacy,<strong> disable Autodetect NFTs<\/strong>.<\/li>\n<\/ul>\n\n\n\n<p>A majority of these settings are used to create a better user experience, however, they come with the risk of exposing data you probably don\u2019t want to expose.<\/p>\n\n\n\n<p>You can always change these settings again if you don\u2019t like the experience. <\/p>\n\n\n\n<p>But, if your goal is to keep MetaMask safe then these changes are a step in the right direction.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">9. Keep MetaMask app and extension up-to-date<\/h3>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"708\" src=\"https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/How-to-Update-MetaMask-extension-1024x708.png\" alt=\"\" class=\"wp-image-7430\" srcset=\"https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/How-to-Update-MetaMask-extension-1024x708.png 1024w, https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/How-to-Update-MetaMask-extension-300x208.png 300w, https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/How-to-Update-MetaMask-extension-768x531.png 768w, https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/How-to-Update-MetaMask-extension.png 1200w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><figcaption class=\"wp-element-caption\">First, tap Manage Extension <\/figcaption><\/figure>\n\n\n\n<p>Keeping your MetaMask app and extension up-to-date is crucial for maintaining secure software.<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"708\" src=\"https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/Keep-MetaMask-up-to-date-1024x708.png\" alt=\"Turn developer mode on and then tap update\" class=\"wp-image-7435\" srcset=\"https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/Keep-MetaMask-up-to-date-1024x708.png 1024w, https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/Keep-MetaMask-up-to-date-300x208.png 300w, https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/Keep-MetaMask-up-to-date-768x531.png 768w, https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/Keep-MetaMask-up-to-date.png 1200w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><figcaption class=\"wp-element-caption\">Second, turn developer mode on and then tap update<\/figcaption><\/figure>\n\n\n\n<p>Updates commonly involve fixes that prevent potential hackers and unauthorized access to applications and private data.<\/p>\n\n\n\n<p>Failing to update MetaMask leaves you at risk for potential hacks. Although this might not be the most common form of an attack, it\u2019s still possible.&nbsp;<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">10. Lock your account when not in use<\/h3>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"708\" src=\"https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/How-to-lock-MetaMask-wallet-1024x708.png\" alt=\"How to lock MetaMask wallet on mobile and the extension.\" class=\"wp-image-7438\" srcset=\"https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/How-to-lock-MetaMask-wallet-1024x708.png 1024w, https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/How-to-lock-MetaMask-wallet-300x208.png 300w, https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/How-to-lock-MetaMask-wallet-768x531.png 768w, https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/How-to-lock-MetaMask-wallet.png 1200w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><figcaption class=\"wp-element-caption\">Mobile and Extension Lock<\/figcaption><\/figure>\n\n\n\n<p>If you set your Auto-lock timer to \u201cimmediately\u201d as I recommended above, you don\u2019t need to worry about this one. <\/p>\n\n\n\n<p>If for some reason you don\u2019t want to set your auto-lock timer, you\u2019ll have to make sure to lock your account manually every time you\u2019re finished using MetaMask.<\/p>\n\n\n\n<p>Each time you lock your account, you\u2019ll need to enter your password to gain access to your wallet. <\/p>\n\n\n\n<p>To lock your account on mobile simply tap the hamburger icon in the top-left corner of your wallet and press Lock.<\/p>\n\n\n\n<p>To lock your wallet using the web extension, tap your profile icon, then tap Lock.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">11. Don\u2019t use MetaMask for storage<\/h3>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"708\" src=\"https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/MetaMask-alternative-wallet-1-1024x708.png\" alt=\"Me holding a Ledger hardware wallet\" class=\"wp-image-7440\" srcset=\"https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/MetaMask-alternative-wallet-1-1024x708.png 1024w, https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/MetaMask-alternative-wallet-1-300x208.png 300w, https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/MetaMask-alternative-wallet-1-768x531.png 768w, https:\/\/cyberscrilla.com\/staging\/4768\/wp-content\/uploads\/2022\/11\/MetaMask-alternative-wallet-1.png 1200w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><figcaption class=\"wp-element-caption\">Holding my Ledger hardware wallet<\/figcaption><\/figure>\n\n\n\n<p>If your main goal is to keep your assets secure, you shouldn\u2019t store them on MetaMask to begin with. I know, I know.<\/p>\n\n\n\n<p>Then what\u2019s the point of this whole thing?<\/p>\n\n\n\n<p>Well, just because you shouldn\u2019t store assets like crypto and NFTs on MetaMask doesn\u2019t mean you shouldn\u2019t still keep your wallet safe.<\/p>\n\n\n\n<p>Okay, so what should you use MetaMask for? I\u2019m glad you asked.<\/p>\n\n\n\n<p>MetaMask is great for transacting and interacting with dapps. <\/p>\n\n\n\n<p>So, it\u2019s okay when used to buy and sell things or to connect to a sketchy website, but you shouldn\u2019t think of it as a storage solution for your digital assets.<\/p>\n\n\n\n<p>MetaMask is a software wallet, hence it\u2019s always connected to the internet. The internet is how hackers gain access to your wallet. <\/p>\n\n\n\n<p>Therefore, there\u2019s always a greater risk of being hacked when using this wallet.<\/p>\n\n\n\n<p>So, what\u2019s the alternative? <\/p>\n\n\n\n<p>The best alternative for storing your digital goods <a href=\"https:\/\/cyberscrilla.com\/staging\/4768\/best-hardware-wallet-for-nfts\/\" target=\"_blank\" rel=\"noreferrer noopener\">is a hardware wallet<\/a>. <\/p>\n\n\n\n<p>This type of wallet is a physical device that holds your private key and secret phrase offline\u2014meaning there\u2019s <a href=\"https:\/\/cyberscrilla.com\/staging\/4768\/can-a-ledger-wallet-be-hacked\/\" target=\"_blank\" rel=\"noreferrer noopener\">minimal risk of being hacked<\/a>.<\/p>\n\n\n\n<p>That said, you can use MetaMask in conjunction with a hardware wallet to securely store your blockchain-based assets.&nbsp;<\/p>\n\n\n\n<p>The best way to do this is by using MetaMask to purchase your assets, such as NFTs, and then send them to your hardware wallet for safekeeping. <\/p>\n\n\n\n<p>Likewise, when you\u2019re ready to sell something you can send it back to MetaMask before making the sale.<\/p>\n\n\n\n<p>This method ensures your MetaMask wallet remains empty in case it is hacked, while your funds remain safe on your hardware device.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Learning how to keep MetaMask secure from hackers is crucial to keep your assets safe. This guide gives you actionable steps to secure your wallet immediately.<\/p>\n","protected":false},"author":1,"featured_media":7417,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"nf_dc_page":"","footnotes":""},"categories":[13],"tags":[233,453],"class_list":["post-7407","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-nft","tag-metamask","tag-secure","generate-columns","tablet-grid-50","mobile-grid-100","grid-parent","grid-33"],"_links":{"self":[{"href":"https:\/\/cyberscrilla.com\/staging\/4768\/wp-json\/wp\/v2\/posts\/7407","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/cyberscrilla.com\/staging\/4768\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/cyberscrilla.com\/staging\/4768\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/cyberscrilla.com\/staging\/4768\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/cyberscrilla.com\/staging\/4768\/wp-json\/wp\/v2\/comments?post=7407"}],"version-history":[{"count":5,"href":"https:\/\/cyberscrilla.com\/staging\/4768\/wp-json\/wp\/v2\/posts\/7407\/revisions"}],"predecessor-version":[{"id":7444,"href":"https:\/\/cyberscrilla.com\/staging\/4768\/wp-json\/wp\/v2\/posts\/7407\/revisions\/7444"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/cyberscrilla.com\/staging\/4768\/wp-json\/wp\/v2\/media\/7417"}],"wp:attachment":[{"href":"https:\/\/cyberscrilla.com\/staging\/4768\/wp-json\/wp\/v2\/media?parent=7407"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/cyberscrilla.com\/staging\/4768\/wp-json\/wp\/v2\/categories?post=7407"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/cyberscrilla.com\/staging\/4768\/wp-json\/wp\/v2\/tags?post=7407"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}