Blind signing blocked. Privacy proxy built in. Read-only by default.
The Ethereum wallet that protects holders — not just connects them.
Works on
Your token balances and portfolio value are tracked automatically — no manual imports, no setup.
and thousands more ERC-20 tokens on Ethereum mainnet
Private keys are generated on your device and encrypted with AES-256-GCM before being stored in chrome.storage.local. They never leave your browser — not even to Heldby.
Raw eth_sign and personal_sign over unreadable data are refused — not warned, blocked. If Heldby can't describe a transaction in plain English, it will not sign it. No override.
No analytics, no crash reporting, no telemetry. Heldby does not know how many people use it. All price and balance data is fetched through a privacy proxy — your IP is never exposed.
No swaps, no DeFi, no NFT viewer. Heldby is designed for one thing — holding Ethereum safely.
Opens in view mode every time. No accidental signatures. PIN required to send — every single time.
Every transaction described in human language before you confirm. "Send 0.1 ETH to 0x71C7…" — not hex.
Every recipient checked against community threat feeds before the send screen even appears.
Unrealized gains, cost basis, and time held. The analytics a holder needs — no CSV exports.
Heldby tests your seed phrase backup every 30 days with a 3-word spot check. No skip — only snooze.
Smart contract interactions have a mandatory 10-second countdown. No snap decisions on risky transactions.
Search "Heldby" or click the button above. The extension pins to your toolbar in under a minute.
Generate a 12-word seed phrase entirely on your device. Write it down, verify it, and you're set.
Your wallet opens read-only every time. Check your portfolio freely. Unlock with your PIN only when sending.
Heldby uses BIP-39 mnemonics, BIP-44 HD derivation, and viem for Ethereum interactions. Nothing proprietary between you and your keys.
View full security architecture →Manifest version
V3
Key encryption
AES-256-GCM
Key derivation
PBKDF2
HD path
m/44'/60'/0'/0/n
Chain support
Ethereum mainnet
Token standard
ERC-20
Price data
CoinGecko (proxied)
Node access
Alchemy (proxied)
100%
On-device key storage
Your keys never leave your browser
ETH + ERC-20
Ethereum mainnet only
No multi-chain confusion in v1
Free
Always and forever
No subscription, no hidden fees
Free to install. No account. No tracking. Your keys stay on your device — always.
Manifest V3 · Chrome Web Store · ETH + ERC-20 · v0.1.0