How to Verify Official Gem Wallet Links
Why You Should Verify Every Linkâ
Scammers can copy Gem Wallet's name, logo, website design, and app screenshots. They may use advertisements, search results, direct messages, or look-alike domain names to lead you to a fake wallet download or Secret Phrase form.
Check the destination before opening a link and again before entering information, downloading software, connecting a wallet, or signing a transaction.
Gem Wallet support never needs your Secret Phrase or private key. Do not enter either one into a website, email, chat, or support form.
Official Gem Wallet Destinationsâ
Use these destinations as reference points:
| Purpose | Official destination |
|---|---|
| Website | gemwallet.com |
| Documentation | docs.gemwallet.com |
| Source code | github.com/gemwalletcom/wallet |
| GitHub organization | github.com/gemwalletcom |
| Apple App Store | App Store ID 6448712670 |
| Google Play | Application ID com.gemwallet.android |
| F-Droid | Package com.gemwallet.android |
| Android releases | github.com/gemwalletcom/wallet/releases/latest |
| Support email | [email protected] |
Start from gemwallet.com or a saved trusted bookmark when you need a download or another project link.
Inspect a Link Before Opening Itâ
On a computer, hover over the link and inspect the destination shown by the browser. On a phone, press and hold the link to preview or copy its address without opening it.
Check that:
- The address uses
https://. - The hostname exactly matches the expected website.
- The spelling, punctuation, and domain ending are correct.
- There are no unexpected words before or after the real domain.
- The link is not hidden behind a shortening service or QR code you cannot verify.
For example, docs.gemwallet.com is a subdomain of gemwallet.com, while gemwallet.com.example.org belongs to example.org. The appearance of gemwallet.com at the beginning of a longer hostname does not make it official.
HTTPS and a padlock only show that the connection to a website is encrypted. A phishing website can also use HTTPS.
Look for Common URL Tricksâ
Stop if you notice:
- Missing, repeated, or substituted letters.
- Added hyphens, numbers, or unfamiliar words.
- A different domain ending.
- An unexpected login, wallet-validation, or claim-reward path.
- Encoded or internationalized characters that resemble normal letters.
- A long redirect URL that hides the final destination.
Do not trust a link because it appears in a sponsored search result, social-media profile, group chat, or direct message. Open the official website independently and navigate from there.
Verify a Gem Wallet App Linkâ
Before installing or updating Gem Wallet:
- Open
gemwallet.comdirectly. - Follow its link to the appropriate distribution channel.
- On Android, verify the application or package ID is
com.gemwallet.android. - On iOS, verify the App Store listing uses ID
6448712670. - For source releases, verify that the page belongs to
github.com/gemwalletcom/wallet.
For the full app checklist, see How to Recognize a Fake Gem Wallet App.
Verify a Support Messageâ
A scammer may impersonate support after you post a question publicly. Treat unsolicited private messages, phone calls, and replies with urgency as suspicious.
Use Settings > Support inside an official Gem Wallet installation. If you cannot access the app, use [email protected].
Official support can help explain app behavior and public blockchain transactions. It cannot:
- Ask for your Secret Phrase or private key.
- Remotely restore or unlock a self-custodial wallet.
- Reverse a confirmed blockchain transaction.
- Require a transfer to validate or synchronize your wallet.
- Guarantee recovery of stolen funds.
Verify a dApp Link Separatelyâ
A link to a third-party dApp is not an official Gem Wallet link merely because it can connect through WalletConnect.
When a dApp requests a connection, compare the domain displayed by Gem Wallet with the address visible in your browser. Review the verification status and requested chains or accounts before approving.
A verified domain reduces some impersonation risk, but it does not guarantee that every transaction from that dApp is safe. Review each request before signing. See WalletConnect Domain Verification in Gem Wallet.
If You Opened a Suspicious Linkâ
If you opened the page but did not download anything, connect a wallet, sign a request, or enter a secret:
- Close the page.
- Do not return through the same message or advertisement.
- Open the official site independently.
- Report the suspicious URL to the service where it appeared.
If you installed an app, follow the fake wallet app guide. If you entered a Secret Phrase, treat it as compromised and follow the Secret Phrase exposure response.
Official Link Verification Checklistâ
- Open the website from a trusted bookmark or type the address yourself.
- Inspect the complete hostname, not just the page title or logo.
- Verify official app and package identifiers.
- Avoid shortened links and unverifiable QR codes.
- Use in-app Support or
[email protected]. - Never enter a Secret Phrase or private key into a website or message.
- Review third-party dApp domains and every transaction independently.