GET METAMASKGET METAMASK
    • 購買

      將現金轉換為加密貨幣

      USD
      $4,000 USD
      ETH
      1 ETH
    • 賺取

      增值你的加密貨幣

      ETH
      3.00254 ETH
      Rewards
      +3%
    • 兌換

      安全兌換任何代幣

      MetaMask USD
      Ethereum
    • 實體資產

      交易代幣化股票與ETF

      MetaMask App
    • 預測

      交易現實世界事件的結果

      MetaMask App
    • 永續合約

      多空代幣,最高可達40倍槓桿

      MetaMask App
      MetaMask App

    探索更多

    • 平台
    • 獎勵
    • 交易防護
    • 加密貨幣
    • 安全
    • Snaps
    • Blog

    關於 MetaMask

    • 常見問題
    • 支援
    • 職涯
    • Learn

    追蹤

    • MetaMask SDK

      Integrate with MetaMask

      first illustration
    • Web3 Services

      Trusted dapp infrastructure

      second illustration
    • 儀表板

      管理 API 金鑰與端點

      third illustration
    • 智慧帳戶套件

      建立無錢包去中心化應用程式

      fourth illustration
    • 嵌入式錢包

      設計強化的鏈上體驗

      second illustration
    • Snaps

      Extend MetaMask

      fifth illustration

    探索更多

    • Home
    • 社群通話
    • Github
    • 部落格

    關於 MetaMask

    • 支援
    • 職涯

    關注

  • MetaMask 卡
  • MetaMask USD
GET METAMASKGET METAMASK
  • Your MetaMask Account

Notifications and user storage privacy approach

Information on the new authentication, notifications, and user configurations storage features available on MetaMask Web.

  • Logging into MetaMask Web improves your experience by enabling you to:
    • Receive notifications about your wallet activity
    • Sync your user configurations and settings across the different devices where you have MetaMask installed. Over time we will start to backup and cross-sync your address book, transaction history, imported tokens, and watched addresses
    • Back up your configurations for when you change or reset your browser
  • Your settings are synced without compromising the confidentiality of your MetaMask activity. Instead of web2-like architectures, where service providers host user data, we use a privacy-first approach where your information is encrypted on the client-side (i.e. locally, on your device), and the server acts as storage and relayer of encrypted data. MetaMask, therefore, has zero visibility of which users or addresses are using this service, and how.
  • When you attempt to sign into MetaMask Web, your MetaMask wallet will ask you to sign a message with your address to prove that you own that account. After signing, you will be logged into MetaMask Web with that account address.
    We use a standard Sign-In with Ethereum flow. Our server receives the signed message and your address, checks the signature, hashes the address together with a salt (a random value) to generate your AccountID, and then forgets the address. The server signs your AccountID and emits a JSON web token (JWT) that the client can use to access MetaMask services, like the user configurations storage or notifications.
    Since the address is not stored and the AccountID hash is not reversible, MetaMask doesn’t know who and which addresses have logged in.
  • User configurations are stored on MetaMask servers, encrypted with a specially generated key only the user owns. Nobody other than the user can read the configurations.
    When you login, we create a client-side key by getting the hash that results from applying your account's signature to a given message. This means the key is deterministic: that is, the result of this signature will always be the same when the same account signs the same message. We use this key to perform client-side encryption of all your user configurations before sending them to MetaMask servers.
    In this context, MetaMask is merely storage, and cannot read who is using the service, nor the content of the configurations, since everything is encrypted client-side. When needed, the encrypted information can be decrypted on another client when the same person logs into their MetaMask from another device.
    We are also actively working with the ecosystem to explore opportunities to decentralize the user configuration storage in the future.
  • We store preferences and configurations, which can include, for example, your public address, currency, favorite tokens, interface settings, or address book. We don’t store, transfer, or backup your private key or Secret Recovery Phrase, both of which are only accessible to you.
  • We monitor blockchains for you and send you push notifications when something relevant happens to your addresses, like receiving tokens, NFTs, or unstaking.
    Different from the user configuration service, which only hosts data encrypted client-side, the notifications service needs to save unencrypted versions of the monitored addresses on the server side. To ensure that multiple addresses cannot be attributed to the same person, our servers save the notifications tasks “untied” to the users they belong to. This means that the link between the AccountIDs and the addresses is only stored client-side.
  • Your MetaMask Account

MetaMask site footer

MetaMask

  • Get MetaMask
  • 購買
  • 賺取
  • 兌換
  • 實體資產
    新
  • 獎勵
  • 預測
    新
  • 永續合約
    新
  • 交易防護
  • Snaps
  • MetaMask 卡
  • MetaMask USD
  • Learn

開發者

  • View the Docs
  • 開發者主頁
  • 儀表板
  • 智慧帳戶套件
  • 嵌入式錢包
  • MetaMask SDK
  • Snaps
  • Web3 服務

關於

  • 安全
  • 支援
  • 部落格
  • 職涯
  • 聯絡我們
  • Consensys
  • Privacy Policy
  • Terms of Use
  • Contributor License Agreement
  • Sitemap
  • Accessibility
©2026 MetaMask • Consensys 創立