# Kukai 2.0 Docs

Welcome to Kukai Docs this is a repository for guides, articles, and tutorials about Kukai Wallet. Check out the Learn section for user guides to get setup and perform basic operations.

{% content-ref url="/pages/-MAjIcCf0BH6Dcccy\_Wf" %}
[Setup a New Wallet](/learn-kukai/new-wallet)
{% endcontent-ref %}

{% content-ref url="/pages/-MAvZucDSHmVPeNwwHBL" %}
[Import & Connect](/learn-kukai/import-wallet)
{% endcontent-ref %}

{% content-ref url="/pages/-MKMiy21PyAuXpoel7-m" %}
[DirectAuth](/learn-kukai/direct-auth)
{% endcontent-ref %}


# Setup a New Wallet

Learn how to setup a new Kukai wallet step-by-step. (est. \~5-10 min)

## Wallet Setup Overview

Creating a new Kukai wallet requries a few simple steps, \~5-10 minutes of your time, and proper storage for long term security.

1. Launch the Kukai Wallet app.
2. Write down your seed phrase and store in a secure location.
3. Encrypt your wallet file with a unique password.
4. Download your encrypted wallet and save a backup copy!

Just like that, we'll have you setup with a secure Tezos wallet! Take your time to record, verify, and store your keys in a safe place. We will help guide you through this process.

\_This guide covers software wallet setup on Chrome, Firefox, and Safari. There will be minor differences on different screen resolutions. Users with Nano Ledger hardware wallets should read [*Connecting Ledger*](https://docs.kukai.app/learn-kukai/import-wallet#connect-a-nano-ledger-s). \_

## **1. Launch the Kukai Wallet**

* \_Launch the app by typing '\*\*<https://kukai.app>' \*\*into your browser's address bar. Alternatively you can use the \*\*'Launch Kukai Wallet' \*\* link in the Kukai Docs navigation bar. \_\
  \_\_
* *Select \*\*New Wallet \*\*from the start page.*

{% hint style="warning" %}
**Best Practice: Always manually type in a web wallet URL. Never click on hyperlinks from the web or social media. This is a common attack vector to steal your funds.**
{% endhint %}

![](/files/-Mjk2CQIYNAotg-z5bpP)

## 2. Backup Your Seed Phrase

*\*\*Write down your seed words \*\*and store them in a **secure location**. Click **Next** when ready!*

{% hint style="info" %}

#### **What are seed words?**

The seed words are an unencrypted backup of your wallet. If you ever lose your encrypted keystore file or password, these seed words can be used to fully restore your wallet and accounts. Because the seed words are not encrypted you should avoid keeping a copy of them electronically, instead they should be stored physically (e.g. a piece of paper or something more durable).
{% endhint %}

{% hint style="danger" %}
Storing the seed words in any electronic form, including pasting them into the clipboard, will come with several risks and should be avoided. Best practice is to write them down and store safely. A hardware device such as a Ledger Nano S provides an even greater layer of protection and should be used whenever the amount you are storing is important to you. Using the wallet in a browser with untrusted browser extensions is discouraged.
{% endhint %}

## **3. Verify your Seed Words**

***Before continuing we need to verify the seed words were accurately recorded.** You will be asked to enter five randomly chosen seed words. Enter each word then select \*\*Next \*\*if successful.*

#### \_**Why isn't the word I am entering accepted?** \_

*Only correct words are accepted and proceed you to the next entry. If you can't proceed it is best to click the \*\*Cancel \*\*button to generate new seed words. Repeat the verification process when you are ready.*

## **4. Encrypt Wallet Data**

*To encrypt your wallet safely a strong password needs to be set. The password indicator will display \*\*“Password strength – Strong!” \*\*when the password is strong enough. **We highly recommend using a unique password that you have never used before.***

## \*\*5. Download Encrypted Wallet \*\*

*After the password has been set, you will be asked to download your encrypted keystore file. Store this in a secure location you can access whenever you need to access your Tezos wallet.*

*The password or private key(s) will never be stored unencrypted within the Kukai Wallet, and you will therefore always be asked for your password when the highest privileges are needed (e.g. signing a transaction).*

\_\_

**Still need help?**

If you are still having trouble with your Kukai wallet join us on our Telegram channel at [https://t.me/kukaiwallet](https://t.me/KukaiWallet). Caution Telegram direct messages are used by scammers. Only message in public channels with moderators.


# Import & Connect

Guide on how to import a wallet.

## Supported Wallet Options

Kukai Wallet gives users the flexibility to import common wallet formats or connect their Ledger. Below are instructions for these different routes.

Follow the import guides, check the FAQ at the bottom, and search the Tezos Stack Exchange if you can't find a specific error. Short on time? Email us or join the Kukai telegram channel, however never answer direct messages, wallet support should always remain in the open channel.

| Software Wallets                                                           | Hardware Wallets                                  |
| -------------------------------------------------------------------------- | ------------------------------------------------- |
| [Import Wallet From Keystore](#import-wallet-from-keystore)                | [Connect Ledger Nano S](#connect-a-nano-ledger-s) |
| [Import Wallet From Seed Words](#import-wallet-from-seed-words)            |                                                   |
| [Import Fundraiser Account](#activate-and-import-tezos-fundraiser-account) |                                                   |

*Support Specifications*\
*The Kukai Wallet import supports specific BIP <#s> which are limited to \<x,y,z> due to HD account support. It is recommended to use \<best practices> or < link to best practices page >*

## Import Wallet From Keystore

* Launch the Kukai Wallet app
* Select **Import Wallet** from the start page
* Browse for a previously created encrypted keystore file
* Enter the password which was used to encrypt the keystore file

![](/files/-Mjk2FHL1fju_n4rsOqG)

## Import Wallet from Seed Words

The seed words are required as they are the unencrypted backup of the wallet you are importing. The passphrase, which is optional, is **not the same as the local password** you would have created to previously encrypt your wallet.

It is recommended you enter the public key hash (account address) you are importing in order to verify that the seed, optional passphrase, and wallet type match the address you expect.

![](/files/-Mjk3DzgHhE2Kk9ZcaTT)

{% hint style="warning" %}
Most often wallets are not created with an optional passphrase. If you are not sure it is best to leave the passphrase blank. Don't confuse the passphrase with the password you will use to encrypt your keystore file and which you will use to confirm every transaction.
{% endhint %}

Select the correct wallet type which was **originally created with these seed words**. Previous versions of Kukai and many other Tezos wallets created accounts which are now considered "Legacy". These older wallets support only a single tz1 account per wallet, and therefore require creating KT accounts in order to delegate to more than one baker. The newer HD wallet type allows for the creation of multiple tz1 accounts in a single wallet.

{% hint style="warning" %}
If you select the wrong wallet type the imported wallet will have a different account address and display a zero balance. To import the correct account address verify the accuracy of the seed words, optional passphrase, and wallet type.
{% endhint %}

## Connect a Nano Ledger S

Whether you are a security-minded delegator or operating your own public bakery with thousands of users Ledger Nano offers users an affordable cold storage solution that is built to bake on Tezos.

![](/files/-Mjk2IFWK2awbZYaiTp5)

Use the default derivation path shown to connect the Ledger with the account address at that path. If you have a custom derivation path turn the toggle On and edit the path directly.

Once you connect verify the account address is correct on both your Ledger device and on the Kukai account information screen.

![](/files/-Mjk2JgRn-PPeC7QX6YA)

| Wallet App        | Default Paths          |
| ----------------- | ---------------------- |
| **Default**       | **44'/1729'/0'/0'**    |
| **Tezbox (Dead)** | **44'/1729'/0'/0'**    |
| **Kukai**         | **44'/1729'/0'/0'**    |
| **Galleon**       | **44'/1729'/0'/0'/0'** |

## Activate & Import Tezos Fundraiser Account

Account activation only has to be performed once and it is recommended to move the funds to a new account, preferably cold storage on activation. Before performing an account activation you need to visit: <https://wallet.kukai.app/activate>.

Due to the varying needs of users you may need to start from the beginning or skip to the end of the guide. This will at least show where a user should be at this stage in his activation process.

| Fundraiser Account Status                       | Go To Section                   |
| ----------------------------------------------- | ------------------------------- |
| My account is not activated. I need a code.     | **Start from the Beginning**    |
| My account is not activated. I have a code.     | **Activate Fundraiser Account** |
| My account is activated, I only want to import. | **Import Fundraiser Wallet**    |

###

### 1. Obtain Your Activation Code

Recommended allocations from the fundraiser must be activated before they can be accessed. A contributor may activate the recommended allocation of a given public key hash by using the Activation Tool. This tool may also reveal the blinded key of the given public key hash. Blinded keys, not public key hashes, are the keys that appear in the genesis block proposed by the Tezos Foundation, which may be found [here](https://tezos.foundation/wp-content/uploads/2018/09/5223213-genesis.txt)

A balance for a public key hash that was recommended an allocation will not appear on a Tezos block explorer until it has been activated. After a contributor has activated its recommended allocation, it may view the “Store and Use” page for information regarding storing and using its Tezos tokens (“tez”).

{% embed url="<https://activate.tezos.com>" %}

### 2. Activate Fundraiser Wallet

To activate the fundraiser wallet navigate to <https://wallet.kukai.app/activate>. Insert your public key hash and activation code.

![](/files/-Mjk2Iw2T-b-h684PIAs)

### 3. Import Fundraiser Wallet

Activate your Tezos Fundraiser allocation on Kukai Wallet by launching the application then select \*\*Import Wallet, or go directly to [**https://wallet.kukai.app/import**](https://wallet.kukai.app/import). \*\* Select the import method *'Fundraiser'* at the top of the card by clicking on the text.

![](/files/-Mjk2G1FYKq0ezMaIlII)

**Requirements**

* *Seed Phrase - 12-24 words shown on the fundraiser PDF (Case Sensitive: No)*
* *Email Address - Provided during the fundraiser to generate your information. (Case Sensitive: Yes)*
* *Password - Fundraiser password you provided (Case Sensitive: Yes)*
* *Public Key Hash - Fundraiser tz1 address shown on the PDF. (Case Sensitive: Yes)*

Fill out the seed, email, password, and public key to complete.

![](/files/-Mjk2Gi5vwcsR90Vm9ze)

## Common Issues

### Fundraiser Import Errors

*Q: My fundraiser information is correct it was confirmed when obtaining my activation code. Why would the activation or wallet import operations fail?*

A: There is limited information on frequency of specific errors however the most common are wrong password and, or, issues related to case-sensitive entry. If your device is auto-correcting keyboard input temporarily disable to rule it out. While this is a simple answer and potentially not going to resolve the issue it narrows our possibilities quickly.

*Kukai Docs is a new site which will evolve as user feedback via email and Telegram support inform the team.*


# DirectAuth

DirectAuth creates a unique Tezos wallet for each of your OAuth accounts. It is powered by an open-source and non-custodial key management system.

When you login with your OAuth account, a proof of the authentication (id token) is sent to the Torus Network. Each node in the BFT network then verifies the proof and replies with a share (Shamir's Secret Sharing), allowing the private key to be reconstructed on the client-side. The operating members of the blockchain agnostic Torus Network selected are trusted and proven ecosystem and industry stakeholders.

![](https://lh6.googleusercontent.com/g9TYnh8sZWZZbnEFlsFMiSArIoHDs55Y7iWISSVphBULKQlxeUUje3A2I9hLtD-fR_BGvSsPgx5XrU_BC8JFWo5bt2Ct-6qsSeaGtK6u7SH08-SABpJoahf7uX0nayMoJ3RF1Q70)

Keys are generated using distributed key generation and tied to an OAuth login. The only way to access your private keys are through your OAuth provider. Therefore, make sure to keep your account safe with a strong password and look over your recovery options. For Google accounts you can also enable 2FA for an extra layer of security for your wallet.

### Learn more

{% embed url="<https://directauth.io>" %}

{% embed url="<https://medium.com/toruslabs/what-distributed-key-generation-is-866adc79620>" %}

{% embed url="<https://medium.com/toruslabs/key-assignments-resolution-and-retrieval-afb984500612>" %}

{% embed url="<https://docs.tor.us/customauth/what-is-customauth>" %}


