Skip to main content
Chainbook provides multiple security options to protect your account and data.

Authentication Options

Password

Traditional email and password authentication.

Passkeys

Modern passwordless authentication using biometrics or security keys.

Password Security

Password Requirements

Passwords must be at least 8 characters long.
Use a password manager to generate and store strong, unique passwords.

Changing Your Password

1

Go to Settings

Navigate to SettingsAccount.
2

Find the Password section

Locate the password change form.
3

Enter current password

Verify your identity by entering your current password.
4

Enter new password

Type your new password twice to confirm.
5

Save changes

Submit the form.
Your password is updated. Use it on your next sign-in.

Forgot Your Password?

If you can’t sign in because you forgot your password, contact support at [email protected] and we’ll help you regain access.
If you have a passkey registered, you can still sign in with it from the sign-in page and then change your password from SettingsAccount.

Email Verification

When you sign up, Chainbook sends a verification email to your address:
  1. Open the email and click the verification link
  2. Until you verify, a banner is shown in the app
  3. Creating wallets is blocked until your email is verified
Didn’t receive the email? Check your spam folder, or contact [email protected].

Passkeys

Passkeys offer passwordless authentication using:
  • Face ID or Touch ID on Apple devices
  • Windows Hello on Windows devices
  • Fingerprint sensors on Android devices
  • Hardware security keys (YubiKey, etc.)

Benefits of Passkeys

Phishing Resistant

Passkeys can’t be phished or stolen like passwords.

Convenient

Sign in with a quick biometric scan.

Cross-Device

Passkeys sync securely across your devices.

No Password to Remember

Eliminate the need for password memorization.

Adding a Passkey

Passkeys are set up after you’ve created your account.
1

Go to Settings

Navigate to SettingsAccount and find the Passkeys section.
2

Click Add Passkey

Click the Add Passkey button.
3

Authenticate

Your device prompts you to authenticate:
  • Use Face ID, Touch ID, or fingerprint
  • Use Windows Hello
  • Insert your security key
Your passkey is registered and ready to use.

Using Passkeys to Sign In

  1. Go to the sign-in page
  2. Choose the passkey sign-in option
  3. Authenticate with your biometric or security key
  4. You’re signed in immediately

Managing Passkeys

View and manage your passkeys in SettingsAccount. The list shows each registered passkey’s device type and whether it’s backed up (synced through your platform account).

Removing a Passkey

  1. Go to SettingsAccount
  2. Find the passkey you want to remove
  3. Click Remove
  4. Confirm the removal

Account Recovery

If you lose access to all your devices and can’t sign in:
  1. Try signing in on a device where your passkey synced (via iCloud, Google, or Microsoft)
  2. Sign in with your password if you have one
  3. Contact [email protected] for help
Keep both a password and a passkey registered for maximum flexibility.

Security Best Practices

Password managers like 1Password, Bitwarden, or Apple Keychain:
  • Generate strong, unique passwords
  • Securely store your credentials
  • Auto-fill login forms
  • Sync across devices
Passkeys are more secure than passwords because:
  • They can’t be guessed or cracked
  • They’re resistant to phishing
  • They don’t work on fake websites
Your email is your account identity:
  • Use a strong, unique email password
  • Enable two-factor authentication on your email
  • Don’t share email access with others
On shared or public computers:
  • Always sign out when done
  • Don’t save passwords in the browser
  • Use private/incognito browsing
  • Consider using passkeys instead of typing passwords

Data Security

  • In transit: All traffic to Chainbook is served over HTTPS
  • Passwords: Hashed with bcrypt — never stored in plain text
  • Access control: Only you and members you invite can see your wallet data
  • Private keys: Chainbook never asks for or stores private keys — we only track public wallet addresses using publicly available blockchain data

Reporting Security Issues

If you discover a security vulnerability:
  1. Email [email protected]
  2. Describe the issue in detail
  3. Include steps to reproduce if possible
We appreciate responsible disclosure.

Frequently Asked Questions

Passkeys provide strong authentication similar to 2FA. Traditional TOTP-based 2FA is on our roadmap.
Yes, you can have both enabled. Use whichever is convenient when signing in.
If your passkeys sync via iCloud, Google, or Microsoft, access them from another device. Otherwise, sign in with your password — or contact [email protected] if you’re locked out.
Chainbook never asks for or stores private keys. We only track public wallet addresses using publicly available blockchain data.