How Bitdash protects your account and your data.
What we will never do
Email and password authentication via Supabase Auth, with email verification and optional time-based two-factor authentication.
Row Level Security policies isolate every user’s data. Administrative access is role-controlled and enforced in the database.
Security-relevant actions — logins, MFA changes, wallet verifications, recovery updates — are recorded in an audit trail.
Review and revoke active sessions, sign out everywhere, and manage one-time backup codes for account recovery.
Wallets are verified by signing a random challenge message with the wallet itself — proving control of the address without exposing anything secret.
Recovery cases are reviewed by humans using legitimate ownership-verification workflows. We will not claim an asset is recoverable when it is not.