VORKA

Security model

Security model

What actually protects your assets, and what we won't claim we don't have.

Signatures, not custody

Every action on a Vorka vault is authorized by an EIP-712 signature — the same standard used by major wallets and DeFi protocols — checked directly by the contract. No forwarder, no relayer with special privileges, no backend that could go down or get compromised and take your access with it.

Where we differ from a secure-element wallet

Ledger, Trezor, and Tangem all embed a certified secure chip that physically cannot export its private key. Vorka doesn't — it's a plain, encrypted keystore file on a regular USB drive. That's a deliberate tradeoff: it costs less to make, and you can duplicate it yourself for backup, something a secure-element wallet is specifically designed to prevent.

Scroll to see the full table →

WalletSecure chipKey storage
Ledger / Trezor / TangemCertified secure elementNon-exportable
VorkaNone — plain USB driveEncrypted file, copyable for backup

Audit status

The vault contracts have not yet completed an independent external audit. The source is public — read it, don't just take our word for it. We'll update this page the day an audit report exists, not after.

Open source

The vault and factory contracts aren't public yet. We'll link the repository here the moment they are — not after you've already bought a key.