Security
Security is the highest priority. Keys are encrypted on-device, with optional client-side encrypted backups. The extension supports hardware wallets (Ledger, Trezor) and allows users to enable biometric unlock or a PIN. Transaction previews show destination addresses, amounts, gas/fees, and contract approvals before signing.
Key protections
Seed phrases remain offline by default. Optional cloud backups (end-to-end encrypted) are available for convenience — only at user choice.
Phishing & Site Isolation
The extension verifies the origin of dApp requests and highlights mismatched domains. Users are warned when interacting with unknown contracts or when token approvals request unlimited access.
Recommendations
Use a hardware wallet for large balances, keep software updated, and avoid pasting seed phrases into websites or chat apps.
Trading
The Coinbase Extension offers quick swaps for common tokens, as well as an advanced trading panel for limit and conditional orders. Fees and slippage are displayed before confirmation, and advanced users can toggle gas settings or choose routing paths.
Simple swaps & advanced orders
Market swaps are one-click, while limit and stop orders provide more control. Trade history and open orders are accessible from the extension UI for fast auditing.
Liquidity & routing
Trades may route through aggregated liquidity sources to achieve optimal pricing — routing details are shown in the confirmation modal.
Management
Manage multiple accounts and addresses, tag wallets for accounting, and view consolidated portfolio balances. Built-in CSV/JSON export simplifies tax reporting, and scheduled transfers/automation rules help with recurring strategies.
Portfolio & automation
Automations include scheduled staking, periodic buys (DCA), and threshold alerts. Analytics run locally by default to preserve privacy.
Integrations
Through strict permission prompts, the extension connects to dApps (DeFi, NFT marketplaces) without exposing private keys. Each integration request lists the scope and duration of access, allowing users to revoke permissions from settings.
Examples
- DeFi swap aggregators — view and sign swaps
- NFT marketplaces — sign listings and bids
- Custodial partners — optional fiat on/off ramps
Best Practices
Adopt good habits: keep backups, use hardware wallets for large sums, verify contract addresses, and revoke token approvals when no longer needed.
Quick checklist
- Store seed phrase offline
- Enable 2FA where applicable
- Verify domain names before signing
- Use unique passwords and a password manager