How to Backup a Trezor: Seed Phrase, Multi-share, Restore

By Simon Bumford, Founder · · 10 min read

How to backup a Trezor safely: the 12 or 24 word backup, Multi-share Backup, the passphrase risk, and how to restore if your Trezor breaks or is lost.

How to backup a Trezor: the short answer

Backing up a Trezor means one thing: recording the recovery phrase, a list of 12 or 24 words that the device shows you on its own screen during setup. Write those words by hand on the backup cards that come in the box, check every word carefully, and store the cards somewhere safe and offline. That is the whole backup. If your Trezor is later lost, broken or stolen, those words recreate your entire wallet on a new device. The words are the only copy of your keys that exists outside the device. Trezor cannot recover them for you, and nobody else can either. So the rules are strict: never type the words into a computer or phone, never photograph them, and never store them in email, cloud storage or a password manager. Paper or metal, offline, always. The rest of this guide covers Trezor's Multi-share Backup, the optional passphrase, what happens if your Trezor breaks or is lost, and the phishing problem every Trezor owner should understand. For principles that apply to any device, see our guide to backing up a hardware wallet.

Which Trezor do you have? Safe 3, Safe 5 and Safe 7 explained

Trezor currently sells three devices, and all of them back up the same way. The Safe 3 (about $59) is the entry model, with two buttons and a small screen. The Safe 5 (about $129) adds a colour touchscreen, which makes checking words and addresses easier. The Safe 7 (about $249, or about £249 from official UK reseller BTC Direct) is the flagship, with a larger touchscreen and Bluetooth. Each comes in a Bitcoin-only version, which many holders prefer for its smaller attack surface. The older Model One and Model T are discontinued and no longer sold new, but they are still supported, with software updates promised until at least 2031 and critical security fixes until at least 2036. Everything in this guide applies to them too. Whichever model you choose, buy it only from trezor.io or an official reseller. Tampered second-hand devices are a real risk, not a theoretical one. And if your coins are still sitting on an exchange, our guide to moving from Coinbase to a hardware wallet covers the transfer itself.

Your backup is the words, not the device

It helps to understand what a Trezor actually holds, because it is not your bitcoin. Your coins exist as entries on the bitcoin network. What the Trezor holds is the private keys that control them, and the 12 or 24 words are a human-readable copy of the master key those keys come from. The words and the device unlock exactly the same money. This has two blunt consequences. First, anyone who reads your words owns your coins, no device or PIN required. Second, losing the device costs you nothing as long as the words survive, but losing both is final. There is no support line, password reset or court order that can bring back a wallet whose words are gone. It also explains two habits worth building from day one. When you receive coins, verify the address on the Trezor's own screen, not just in the app on your computer, because malware can swap addresses in the app. And when you move any meaningful amount, send a small test amount first and confirm it arrives before sending the rest.

How to back up your Trezor seed phrase, step by step

When you create a new wallet in Trezor Suite, the device generates your words internally and shows them one at a time on its own screen. They never pass through your computer, which is the whole point of a hardware wallet. Your job is simply to copy them faithfully. Write the words by hand on the wallet backup cards supplied in the box, in order, checking the spelling of each one. The device will then quiz you on a few words to confirm the copy is accurate. Do not rush this step: a single wrong or misplaced word can make recovery painful or impossible. Then think about storage. Keep at least two copies in two separate places, so a single fire, flood or burglary cannot take both. A stamped metal backup is worth considering for long-term durability, since paper burns and fades. Do not store a copy in the same drawer as the Trezor itself, and never create a digital version of any kind: no photos, no scans, no cloud notes, no password managers, no emailing it to yourself. Every seed phrase that touches an internet-connected device is a seed phrase you should assume is compromised.

Trezor Multi-share Backup in plain English

Trezor also offers Multi-share Backup, built on a standard called SLIP39 that SatoshiLabs, Trezor's maker, invented. Instead of one list of words, the device splits your backup into several lists, called shares, and you choose how many are needed to recover the wallet. A common setup is three of five: five shares exist, any three restore the wallet, and any two on their own are mathematically useless. The appeal is that there is no single point of failure. One share lost in a house fire does not lose your coins, and one share discovered by a thief does not hand them over. You can spread shares across your home, a bank deposit box and trusted family members without any one location being able to empty the wallet. The cost is complexity. You now have several pieces to store, track and keep findable, and recovery means physically gathering the threshold number of shares. For modest holdings with one genuinely secure storage spot, the standard backup is fine. Multi-share earns its keep for larger holdings, or for anyone whose honest answer to "where would I keep the one copy?" is "nowhere I fully trust". If you use it, keep a plain written note of how many shares exist and how many are needed, stored with your other important papers.

The passphrase: what the 25th word does, and the risk

Every Trezor supports an optional passphrase, often called the 25th word. It is a word or phrase you invent, and combined with your seed words it opens a separate hidden wallet. Someone who finds your 24 words but not your passphrase finds an empty decoy, not your coins. After researchers showed in 2020 that seeds could be physically extracted from the old Model One and Model T, a strong passphrase was Trezor's own recommended protection, because it keeps funds safe even if the seed is exposed. Now the sharp edge. The passphrase is stored nowhere: not on the device, not by Trezor, not in your seed words. There is no reset. Mistype it and the device silently opens a new, empty wallet, which has terrified plenty of careful people. Forget it entirely and your coins are gone forever, even with a flawless seed backup in hand. If you use one, treat it as a second secret with its own backup: write it down, store it separately from your seed words, and never keep the two together, since together they are the whole kingdom. And ask the uncomfortable question early: if something happened to you tomorrow, could anyone you trust ever assemble both pieces?

What happens if your Trezor breaks or is lost?

Nothing happens to your bitcoin. The coins sit on the network, unaware your device exists, and your backup words can rebuild the wallet whenever you are ready. This is the moment the backup you made on day one either pays for itself or exposes its flaws. The clean path is to buy a replacement Trezor from the official store, choose the recovery option during setup, and enter your words on the device itself, following its on-screen process so the words never touch your computer. Your balances and addresses reappear exactly as they were. Any current model can restore a backup made on an older one. In an emergency you can restore into compatible software wallets such as Electrum or Sparrow, but be honest about the trade: typing your words into a computer exposes them to that computer. Treat it as a last resort, and move the coins to a fresh hardware wallet soon after. If the device was stolen rather than broken, your PIN buys you time, but do not rely on it forever. If you have any doubt about whether your words are still secret, move your funds to a brand new wallet with a brand new backup. A monitoring service like Watchtower can also alert you, or someone you trust, if coins ever move unexpectedly.

Why every Trezor email deserves suspicion

Trezor devices have a strong security record, but Trezor's customer data has been leaked twice, and both leaks were used to attack customers. In April 2022, attackers who breached Mailchimp stole Trezor's mailing list and sent a convincing phishing email pushing a trojanised clone of Trezor Suite that harvested seed phrases. Some users lost funds. In January 2024, Trezor's third-party support portal was breached, exposing names and email addresses of up to 66,000 customers, and at least 41 of them then received targeted emails asking for their recovery seeds. So treat every email that appears to come from Trezor as hostile until proven otherwise. The rule that keeps you safe is simple: your recovery words are only ever entered on the Trezor device itself, during a recovery you initiated. No genuine email, website, support agent or app update will ever ask you to type them in. Any message that does is an attack, however official it looks. When you need Trezor Suite or support, type trezor.io into your browser yourself rather than clicking a link. And this is not a Trezor quirk: Ledger has suffered worse customer data leaks, as we cover in our guide to backing up a Ledger. Assume every wallet company's email list eventually leaks, and you will not be caught out.

Physical attacks on Trezor: an honest history

You may have read that Trezors can be hacked, and it deserves a straight answer. In 2020, Kraken's security team showed that the seed could be extracted from a Model One or Model T with about 15 minutes of physical access and roughly $75 of equipment, exploiting a flaw in the STM32 chip that firmware could not fix. In 2023, the firm Unciphered demonstrated another physical extraction on the Model T requiring chip-level disassembly. Both attacks needed the device in hand; no Trezor has ever been compromised remotely. Trezor's answer was the Safe line. Since 2023, every current model pairs open-source firmware with a certified secure element that protects the PIN and keys, and the Safe 7 adds an auditable secure chip on top. The old extraction attacks do not apply to these devices. If you still hold meaningful sums on a Model One or Model T, either add a strong passphrase, which protects funds even if the seed were extracted, or migrate to a current model. The practical lessons are the ones this guide keeps returning to. Buy only from official channels, since a tampered device is the realistic physical attack for ordinary holders. And remember the words matter more than the hardware: for how backups fit into your wider setup, see our approach to security.

The backup that survives you

There is one failure mode that perfect backup technique does not cover: you. A seed phrase in a safe, a Multi-share Backup across three counties, a passphrase held only in your head. All of it works beautifully while you are alive and well, and all of it can fail completely the day you die or lose capacity. If nobody you trust knows the wallet exists, where the words are, or what a passphrase is, your coins are as gone as if the backup had burned. UK families have lost bitcoin exactly this way, and it is avoidable with a small amount of planning: a clear record of what exists, where it is, and how a non-technical executor should proceed, without ever writing down the secrets themselves. That is what crypto inheritance planning is for. If you want to know how your current setup would hold up, the free inheritance scorecard takes a few minutes and will show you the gaps while there is still time to close them.

Frequently Asked Questions

What happens if my Trezor breaks or is lost?

Your bitcoin is unaffected, because the coins live on the network and not inside the device. Buy a replacement from the official Trezor store, choose the recovery option during setup, and enter your 12 or 24 backup words on the new device itself. Your wallet, balances and addresses reappear exactly as before. Without the backup words, however, a broken or lost Trezor means the funds are gone, and Trezor cannot help you recover them.

Can I restore my Trezor seed phrase in another wallet?

Yes. Trezor uses open standards, so your backup words can be restored on any current Trezor model or in compatible wallets such as Electrum or Sparrow. Restoring into software on a computer exposes your words to that computer, so treat it strictly as an emergency measure, then move the coins to a new hardware wallet with a fresh backup as soon as you can.

Is it safe to keep my Trezor recovery phrase in a password manager or the cloud?

No. Anyone who reads your recovery words controls your coins, so the words must never exist in digital form at all. That rules out password managers, cloud storage, notes apps, email drafts, photos and screenshots. Write the words by hand on the supplied backup cards or stamp them into metal, keep copies in two separate physical locations, and never type them into anything except a Trezor device during recovery.

What is the difference between Trezor Multi-share Backup and the standard backup?

The standard backup is a single list of 12 or 24 words: simple, but a single point of failure. Multi-share Backup splits your backup into several word lists, and you choose how many are needed to recover, such as any three of five. Individual shares reveal nothing on their own, so you can spread them across locations or trusted people. It suits larger holdings; for most people with one genuinely secure spot, the standard backup is fine.

What happens if I forget my Trezor passphrase?

The funds in that hidden wallet are permanently lost, even if your seed words are perfectly backed up. The passphrase is stored nowhere, not on the device and not by Trezor, and there is no reset or recovery process. Entering a different passphrase simply opens a new, empty wallet. If you use a passphrase, back it up in writing and store it separately from your seed words, never alongside them.

Is it safe to buy a second-hand Trezor?

No. A used or third-party marketplace device may have been tampered with to leak your keys, and discontinued models like the Model One and Model T also carry known physical seed-extraction flaws. Buy new, directly from trezor.io or an official reseller, and let the device generate a fresh wallet backup on its own screen during setup. The saving on a second-hand unit is trivial compared with what a tampered device can cost you.

Sources

Ready to plan your crypto inheritance?

Speak to our UK-based team about your situation. No obligation, no pressure.

Speak to us