Security
From the almanac

How to choose a crypto exchange: a working checklist
Fees are the easiest thing to compare and rarely the thing that costs you most. Here is the order of priority that survives contact with reality — starting with whether you get your money back.

Proof of reserves: what it shows and what it leaves out
After several exchange failures, proof of reserves became the industry's answer to 'are the coins there?'. It is a genuine improvement on nothing, and a long way from an audit.

Smart-contract wallets: programmable custody, explained
A smart-contract wallet replaces a single private key with code, which allows recovery, spending limits and paying fees in stablecoins. It also makes your wallet a contract with all that implies.

Planning crypto inheritance without handing over the keys
Self-custody means no bank will help your family recover anything. A workable plan tells them what exists and how to reach it — without creating a copy of your keys that anyone can use today.

Metal seed backups: paper survives daily life, not disasters
A seed phrase on paper is one flood, fire or faded biro away from unrecoverable. Stamping it into metal costs less than most hardware wallets and removes an entire category of loss.

How wallet drainers work, step by step
Drainer kits industrialised crypto theft: a template site, a signature request, and a wallet emptied in one confirmation. Understanding the sequence is what lets you break it.

Two-factor authentication for crypto accounts, ranked by strength
SMS codes, authenticator apps and security keys are not equivalent, and the gap between them is where account takeovers happen. Here is how each one fails and which to use where.

Burner wallets: the case for a throwaway account
A burner wallet is a disposable account that holds almost nothing and does the risky interactions on your behalf. Used properly, it turns most wallet-drain incidents into a minor annoyance.

The 25th word: how wallet passphrases work
A passphrase turns one seed phrase into an unlimited number of separate wallets, and gives you a plausible answer to someone demanding your keys. It also has no recovery path whatsoever.

Multisig wallets: what they solve, and what they cost you
A multisig wallet requires several keys to approve a transaction, which removes the single point of failure at the heart of ordinary self-custody. It also introduces complexity that has lost people their funds.

How to verify a crypto address before you hit send
Address poisoning, clipboard malware and lookalike characters all exploit the same habit: copying an address without checking it. Here is a verification routine that takes seconds and survives all three.

Token approvals: the permission that quietly drains wallets
Every DeFi app you touch asks for a token approval, and most of them ask for an unlimited one. Here is what that permission actually grants, how it gets abused, and the review routine that keeps it contained.

How to Buy Bitcoin Safely (Step by Step)
A plain-English walkthrough of buying your first Bitcoin: choosing a platform, placing an order, keeping fees low, and moving coins to a wallet you control.

Hot vs Cold Wallets: Which Should You Use?
Hot wallets are connected to the internet for everyday use; cold wallets stay offline for long-term safety. Here is how to decide which fits your holdings.

How to Read a Crypto Whitepaper
A whitepaper is a project's pitch and blueprint. Learn what to look for, which red flags signal trouble, and how to separate substance from marketing.

How to avoid crypto scams: a practical guide
The most common crypto scams and the simple habits that defeat almost all of them, from phishing to fake giveaways and rug pulls.

Seed phrases and wallet recovery explained
What a seed phrase is, why it is the master key to your crypto, and how to store and recover it safely.