Privacy without
fine print.
Besa Wallet is non-custodial. Your recovery phrase and private key remain under your control on your device.
Data stored locally
Your recovery phrase is encrypted with AES-256-GCM and stored only on your device. While the wallet is unlocked, it is available only in private extension session memory and is cleared 30 seconds after the popup closes or immediately when you lock the wallet. Your wallet password is never stored. Besa Wallet does not transmit your recovery phrase or private key.
Public blockchain data
To show balances, estimate network fees, and broadcast transactions you approve, Besa Wallet sends public wallet addresses and blockchain requests to the RPC endpoint for the selected network or to Blockstream for Bitcoin.
Blockchain service providers
Public blockchain requests may be processed by PublicNode for Ethereum and BNB Smart Chain, dRPC for Polygon, the public Arbitrum and Base endpoints, and Blockstream for Bitcoin. These providers receive only the information required to answer the blockchain request, such as a public address or signed transaction.
Admin registry
The Chrome extension does not currently synchronize with an Admin registry. A future version may offer optional public-address registration only after explicit consent and an updated privacy disclosure.
How data is used
Besa Wallet does not sell user data, use it for advertising, or track browsing history. The extension does not read visited websites, page content, cookies, email, or personal communications.
Deletion and retention
Use “Forget this wallet on this device” to erase locally stored wallet data. Uninstalling the extension also removes its local data. Public blockchain transactions cannot be deleted because blockchains are independent public networks.
Security and user responsibility
No online service can recover your wallet. Keep your recovery phrase offline and private. Anyone who obtains it can control the associated assets, and blockchain transactions may be irreversible.
Chrome Web Store Limited Use
Besa Wallet's use and transfer of user data complies with the Chrome Web Store User Data Policy, including the Limited Use requirements. Data is used only to provide the wallet features described to the user. It is not sold, used for advertising, used for creditworthiness or lending, or made available for unrelated human review.
dApp connections
The Chrome extension makes Besa Wallet discoverable to compatible dApps on HTTP and HTTPS pages. It receives the website origin and only the wallet requests that the dApp explicitly sends. A public address is shared only after your approval, and every signature or transaction requires a separate password-protected confirmation. The provider does not read page text, forms, cookies, email, or browsing history.