Security
How the Trust Wallet Security Scanner Works
Share post
In Brief
The Trust Wallet Security Scanner checks every transaction before you sign it: it simulates the real effect, screens destinations against known scam contracts, and warns on risky token approvals. Here's how it works and what it catches.

The Security Scanner checks every transaction before you sign it: it simulates what the transaction will actually do, screens the destination against known scam and drainer contracts, and warns you about risky token approvals. You see the real effect — what leaves your wallet, what permissions are granted — instead of unreadable contract data, and you can reject with one tap. It is a prompt to look closer — not a guarantee.
Why Do Wallets Need a Security Scanner?
Almost all modern crypto theft is authorized theft. Attackers don't break cryptography — they present a transaction that looks harmless (a mint, an airdrop claim, a "verification") and rely on you signing it without understanding it. This is called blind signing, and it's how most drainer attacks succeed.
A scanner closes that gap: it translates the raw transaction into its real consequences before your signature makes them permanent.
What Happens When You Sign?
Simulation. The scanner runs the transaction against the current blockchain state and computes the outcome: which assets leave your wallet, which arrive, which permissions change.
Screening. The destination address and contract are checked against continuously updated databases of known scams, drainer kits, and malicious approvals.
Plain-language result. Instead of hex data, you see the effect: "this sends X", "this grants unlimited spending of Y".
Warning or block-level alert. Risky requests get a clear warning before you can proceed.
Your decision. Nothing moves without your signature — the scanner informs it, you make it.
What Does It Catch?
| Threat | How the scanner helps |
|---|---|
| [Crypto drainers](https://trustwallet.com/glossary/crypto-drainer) | Flags known drainer contracts and suspicious approval patterns |
| Malicious token approvals | Shows when a request grants spending rights, and to whom |
| [Address poisoning](https://trustwallet.com/glossary/address-poisoning) | Transaction preview shows the true destination, not a look-alike from history |
| Hidden transfers | Simulation reveals asset movements a fake site doesn't mention |
What It Can't Do
No scanner makes every transaction safe, and pretending otherwise would be dishonest. Brand-new scam contracts may not be in any database yet, and a simulation can't judge whether a legitimate-looking trade is a good decision. The scanner removes the invisible risks; the judgment stays yours. That's why it works best combined with basic habits: read every request, reject what you can't explain, and revoke approvals you no longer use.
Do I Need to Turn It On?
No — transaction screening is built into the signing flow. Every transaction you review in Trust Wallet passes through it automatically, on mobile and in the browser extension, across the 100+ supported blockchains.
The Security Scanner and Self-Custody
Self-custody means nothing moves without your signature. The Security Scanner exists to make each of those signatures an informed one — the difference between clicking "confirm" on faith and approving something you actually understand. Learn more about the full security model at trustwallet.com/security.
Disclaimer: Content is for informational purposes and not investment, financial, or tax advice. Web3 and crypto come with risk. Please do your own research with respect to interacting with any Web3 applications or crypto assets. View our terms of service.