Skip to main content

How to Verify Official Gem Wallet Links

Scammers can copy Gem Wallet's name, logo, website design, and app screenshots. They may use advertisements, search results, direct messages, or look-alike domain names to lead you to a fake wallet download or Secret Phrase form.

Check the destination before opening a link and again before entering information, downloading software, connecting a wallet, or signing a transaction.

danger

Gem Wallet support never needs your Secret Phrase or private key. Do not enter either one into a website, email, chat, or support form.

Official Gem Wallet Destinations​

Use these destinations as reference points:

PurposeOfficial destination
Websitegemwallet.com
Documentationdocs.gemwallet.com
Source codegithub.com/gemwalletcom/wallet
GitHub organizationgithub.com/gemwalletcom
Apple App StoreApp Store ID 6448712670
Google PlayApplication ID com.gemwallet.android
F-DroidPackage com.gemwallet.android
Android releasesgithub.com/gemwalletcom/wallet/releases/latest
Support email[email protected]

Start from gemwallet.com or a saved trusted bookmark when you need a download or another project link.

On a computer, hover over the link and inspect the destination shown by the browser. On a phone, press and hold the link to preview or copy its address without opening it.

Check that:

  1. The address uses https://.
  2. The hostname exactly matches the expected website.
  3. The spelling, punctuation, and domain ending are correct.
  4. There are no unexpected words before or after the real domain.
  5. The link is not hidden behind a shortening service or QR code you cannot verify.

For example, docs.gemwallet.com is a subdomain of gemwallet.com, while gemwallet.com.example.org belongs to example.org. The appearance of gemwallet.com at the beginning of a longer hostname does not make it official.

caution

HTTPS and a padlock only show that the connection to a website is encrypted. A phishing website can also use HTTPS.

Look for Common URL Tricks​

Stop if you notice:

  • Missing, repeated, or substituted letters.
  • Added hyphens, numbers, or unfamiliar words.
  • A different domain ending.
  • An unexpected login, wallet-validation, or claim-reward path.
  • Encoded or internationalized characters that resemble normal letters.
  • A long redirect URL that hides the final destination.

Do not trust a link because it appears in a sponsored search result, social-media profile, group chat, or direct message. Open the official website independently and navigate from there.

Before installing or updating Gem Wallet:

  1. Open gemwallet.com directly.
  2. Follow its link to the appropriate distribution channel.
  3. On Android, verify the application or package ID is com.gemwallet.android.
  4. On iOS, verify the App Store listing uses ID 6448712670.
  5. For source releases, verify that the page belongs to github.com/gemwalletcom/wallet.

For the full app checklist, see How to Recognize a Fake Gem Wallet App.

Verify a Support Message​

A scammer may impersonate support after you post a question publicly. Treat unsolicited private messages, phone calls, and replies with urgency as suspicious.

Use Settings > Support inside an official Gem Wallet installation. If you cannot access the app, use [email protected].

Official support can help explain app behavior and public blockchain transactions. It cannot:

  • Ask for your Secret Phrase or private key.
  • Remotely restore or unlock a self-custodial wallet.
  • Reverse a confirmed blockchain transaction.
  • Require a transfer to validate or synchronize your wallet.
  • Guarantee recovery of stolen funds.

A link to a third-party dApp is not an official Gem Wallet link merely because it can connect through WalletConnect.

When a dApp requests a connection, compare the domain displayed by Gem Wallet with the address visible in your browser. Review the verification status and requested chains or accounts before approving.

A verified domain reduces some impersonation risk, but it does not guarantee that every transaction from that dApp is safe. Review each request before signing. See WalletConnect Domain Verification in Gem Wallet.

If you opened the page but did not download anything, connect a wallet, sign a request, or enter a secret:

  1. Close the page.
  2. Do not return through the same message or advertisement.
  3. Open the official site independently.
  4. Report the suspicious URL to the service where it appeared.

If you installed an app, follow the fake wallet app guide. If you entered a Secret Phrase, treat it as compromised and follow the Secret Phrase exposure response.

  • Open the website from a trusted bookmark or type the address yourself.
  • Inspect the complete hostname, not just the page title or logo.
  • Verify official app and package identifiers.
  • Avoid shortened links and unverifiable QR codes.
  • Use in-app Support or [email protected].
  • Never enter a Secret Phrase or private key into a website or message.
  • Review third-party dApp domains and every transaction independently.