Before you start
Before acting, make sure you understand the difference between domain verification and account requests and are ready to verify network checks. Do not continue with any webpage that asks you to enter a seed phrase, private key or verification code.
- Confirm the network matches the intended domain verification
- Be ready to verify account requests and network checks
- Never provide a seed phrase, private key or verification code to a website or another person
- Stop when a signature content request cannot be explained
Understand the boundary of domain verification
DApp Connection Checklist is easier to use correctly when domain verification is treated as a verifiable part of an on-chain workflow rather than a label in the interface. Use domain verification, account requests, network checks, signature review and disconnection as a repeatable DApp connection process. The key distinction is between what a wallet displays for convenience and what the target blockchain records as state. A balance, network name, contract reference or transaction status should therefore be checked in the context of the network where the action actually occurs.
Looking at domain verification together with account requests prevents many avoidable mistakes. Similar address formats can appear on different networks, familiar token names can refer to different contracts, and a request can look routine while asking for broader permissions than expected. Before acting on network checks, confirm the source of the request, the selected network, the destination or contract and the exact action being authorized.
A robust routine keeps enough information to review the action later. Save a transaction hash when relevant, use an appropriate block explorer to check on-chain status, read signature or approval details before confirming and stop when a request cannot be explained. Familiar names, icons or balances are not substitutes for verification, and confirmed on-chain actions are generally not reversible by a wallet on its own.
- Confirm that you are evaluating domain verification, not a similar-looking concept.
- Tie account requests to the intended network, address or contract.
- Keep at least one verifiable reference before proceeding with network checks.
How account requests changes the workflow
DApp Connection Checklist is easier to use correctly when account requests is treated as a verifiable part of an on-chain workflow rather than a label in the interface. Use domain verification, account requests, network checks, signature review and disconnection as a repeatable DApp connection process. The key distinction is between what a wallet displays for convenience and what the target blockchain records as state. A balance, network name, contract reference or transaction status should therefore be checked in the context of the network where the action actually occurs.
Looking at account requests together with network checks prevents many avoidable mistakes. Similar address formats can appear on different networks, familiar token names can refer to different contracts, and a request can look routine while asking for broader permissions than expected. Before acting on signature content, confirm the source of the request, the selected network, the destination or contract and the exact action being authorized.
A robust routine keeps enough information to review the action later. Save a transaction hash when relevant, use an appropriate block explorer to check on-chain status, read signature or approval details before confirming and stop when a request cannot be explained. Familiar names, icons or balances are not substitutes for verification, and confirmed on-chain actions are generally not reversible by a wallet on its own.
- Confirm that you are evaluating account requests, not a similar-looking concept.
- Tie network checks to the intended network, address or contract.
- Keep at least one verifiable reference before proceeding with signature content.
What to verify around network checks
DApp Connection Checklist is easier to use correctly when network checks is treated as a verifiable part of an on-chain workflow rather than a label in the interface. Use domain verification, account requests, network checks, signature review and disconnection as a repeatable DApp connection process. The key distinction is between what a wallet displays for convenience and what the target blockchain records as state. A balance, network name, contract reference or transaction status should therefore be checked in the context of the network where the action actually occurs.
Looking at network checks together with signature content prevents many avoidable mistakes. Similar address formats can appear on different networks, familiar token names can refer to different contracts, and a request can look routine while asking for broader permissions than expected. Before acting on disconnecting, confirm the source of the request, the selected network, the destination or contract and the exact action being authorized.
A robust routine keeps enough information to review the action later. Save a transaction hash when relevant, use an appropriate block explorer to check on-chain status, read signature or approval details before confirming and stop when a request cannot be explained. Familiar names, icons or balances are not substitutes for verification, and confirmed on-chain actions are generally not reversible by a wallet on its own.
- Confirm that you are evaluating network checks, not a similar-looking concept.
- Tie signature content to the intended network, address or contract.
- Keep at least one verifiable reference before proceeding with disconnecting.
How signature content relates to disconnecting
DApp Connection Checklist is easier to use correctly when signature content is treated as a verifiable part of an on-chain workflow rather than a label in the interface. Use domain verification, account requests, network checks, signature review and disconnection as a repeatable DApp connection process. The key distinction is between what a wallet displays for convenience and what the target blockchain records as state. A balance, network name, contract reference or transaction status should therefore be checked in the context of the network where the action actually occurs.
Looking at signature content together with disconnecting prevents many avoidable mistakes. Similar address formats can appear on different networks, familiar token names can refer to different contracts, and a request can look routine while asking for broader permissions than expected. Before acting on domain verification, confirm the source of the request, the selected network, the destination or contract and the exact action being authorized.
A robust routine keeps enough information to review the action later. Save a transaction hash when relevant, use an appropriate block explorer to check on-chain status, read signature or approval details before confirming and stop when a request cannot be explained. Familiar names, icons or balances are not substitutes for verification, and confirmed on-chain actions are generally not reversible by a wallet on its own.
- Confirm that you are evaluating signature content, not a similar-looking concept.
- Tie disconnecting to the intended network, address or contract.
- Keep at least one verifiable reference before proceeding with domain verification.
Common mistakes and safer habits
DApp Connection Checklist is easier to use correctly when disconnecting is treated as a verifiable part of an on-chain workflow rather than a label in the interface. Use domain verification, account requests, network checks, signature review and disconnection as a repeatable DApp connection process. The key distinction is between what a wallet displays for convenience and what the target blockchain records as state. A balance, network name, contract reference or transaction status should therefore be checked in the context of the network where the action actually occurs.
Looking at disconnecting together with domain verification prevents many avoidable mistakes. Similar address formats can appear on different networks, familiar token names can refer to different contracts, and a request can look routine while asking for broader permissions than expected. Before acting on account requests, confirm the source of the request, the selected network, the destination or contract and the exact action being authorized.
A robust routine keeps enough information to review the action later. Save a transaction hash when relevant, use an appropriate block explorer to check on-chain status, read signature or approval details before confirming and stop when a request cannot be explained. Familiar names, icons or balances are not substitutes for verification, and confirmed on-chain actions are generally not reversible by a wallet on its own.
- Confirm that you are evaluating disconnecting, not a similar-looking concept.
- Tie domain verification to the intended network, address or contract.
- Keep at least one verifiable reference before proceeding with account requests.
Action checklist
- Verify domain verification
- Confirm account requests
- Review network checks
- Understand the consequence of signature content
- Review disconnecting after completion
