Trezor passphrase recovery
Trezor passphrase recovery means finding the exact optional passphrase for a hidden wallet; it is different from recovering a device PIN. A search may be practical when the correct wallet backup is available and you remember enough about the passphrase. Trezor cannot reset it, and a strong unknown passphrase may be infeasible to recover.
What you need: Tell us the device model, whether you still have the wallet backup, and whether you know a public receiving address from the hidden wallet. Describe only non-sensitive passphrase context; keep the backup words and actual passphrase private.
Limits: The correct backup and exact passphrase are needed to derive the same wallet. A different passphrase can open a different, empty wallet; a successful PIN recovery does not recover a hidden-wallet passphrase.
Fee: Free assessment; 20% of recovered value only on success, with no upfront payment. Request an assessment.
First contact: Describe the problem and which backups or devices you still have. Do not send wallet files, passwords, seed words or passphrases in your first message; our team will explain the agreed handling process if the case is suitable.
Published case: Our older Trezor One PIN case is a related, company-reported hardware recovery. It concerns a PIN and specific firmware conditions, so it is not evidence that an unknown hidden-wallet passphrase can be recovered.
A lost Trezor passphrase feels hopeless because Trezor, by design, stores it nowhere and cannot reset it. With the correct wallet backup, candidate passphrases can be checked against a known address; success depends on how much the search can be narrowed. The first thing to sort out is which secret you have actually lost, because people routinely confuse three different things.
Passphrase vs PIN vs seed — know which you lost
These get mixed up constantly, and the recovery path is completely different for each:
- The PIN only unlocks the physical Trezor. It is not part of your keys. If you forgot the PIN but have your recovery seed, you don’t need it — you simply restore the seed. On-device PIN attempts are subject to device-specific protections; do not experiment with a locked device without understanding its recovery options.
- The wallet backup may use BIP39 words or a SLIP39 backup/share set, depending on the setup. Identify the format and required shares before assessing recovery. A lost paper backup is a different problem from losing access to a working device.
- The passphrase is an optional string used with the backup to derive a separate hidden wallet. “25th word” is only a nickname; it need not be one word, and it is not the device PIN.
If you have the seed and only the passphrase is missing, you are in the best possible position. The rest of this guide is about that case.
What a Trezor passphrase really is
When you enable a passphrase, Trezor takes your recovery seed and your passphrase together and derives an entirely new set of accounts — the hidden wallet. Change a single character of the passphrase and you get a completely different, valid, empty wallet, with no error message. There is no “wrong passphrase” warning because every passphrase is technically valid; each just opens a different wallet.
The passphrase is case-sensitive and must reproduce the original input. Trezor’s official passphrase guidance describes a limit of 50 characters and why a different passphrase opens another wallet. Device model, firmware and backup standard still matter when investigating an older setup.
The good news: if you still have your recovery seed
With your seed words in hand, a lost passphrase becomes a search rather than a dead end. We take your seed, generate passphrase candidates, derive the hidden wallet’s addresses for each, and compare them to a receiving address you know was yours. The instant the derived address matches, we have the passphrase — but any recovery process involving a wallet backup requires an explicitly agreed method for protecting that sensitive material.
This is why we always ask for a target address from the hidden wallet: it is the anchor that tells us, with certainty, when a candidate is correct.
Why a “correct” passphrase fails — the part most people miss
An empty hidden wallet has several possible explanations: different passphrase characters, the wrong backup, a different account path, incomplete synchronization or funds that have moved. Verify a known address and its history before assuming the remembered passphrase is correct. Input checks include:
- Smart quotes. A phone or macOS auto-correcting a straight ‘ or “ into a curly ’ or ” changes the passphrase completely.
- Wallet-standard handling. BIP39 specifies NFKD normalization, so canonically equivalent Unicode forms should not by themselves produce different BIP39 seeds in a compliant implementation. Check the original backup standard and actual input behavior before attributing an empty wallet to encoding.
- Keyboard layout. A passphrase created on one layout and re-typed on another can swap y/z, or special characters, without you noticing.
- Stray spaces and invisible characters at the start or end, or a capital where you meant lowercase.
Reproducing and sweeping these variations is a core part of what we do — and it is often the whole reason a “lost” passphrase is recovered in minutes rather than never.
How Trezor passphrase recovery works
Recovery is a structured search, not blind guessing. From everything you can tell us — the length, a theme, partial recall, the language and keyboard you used, words or numbers you tend to reuse — we build targeted candidate sets and then expand them with mutations: capitalisation, spacing, common substitutions, and the smart-quote and Unicode variants above. Each candidate is derived across the standard paths (m/44’/0’/0′, m/49′, m/84′ for Bitcoin, and the Ethereum path where relevant) and checked against your target address.
Because the check is a derivation rather than an online guess, it runs fast and entirely offline — there is no device to lock out and nothing leaves our hardware. When a candidate’s derived address matches yours, the passphrase is confirmed and you regain access to the hidden wallet.
What information helps an assessment
- Backup availability and type: whether BIP39 words or a SLIP39 backup/share set survives, and whether the device still works. Do not send the words in the first message.
- A known receiving address: helps identify the intended hidden wallet and check a recovered candidate.
- Non-sensitive passphrase context: approximate length, language, keyboard and whether useful hints remain. Detailed material requires an agreed secure process.
What we can’t do — honestly
A passphrase search requires the correct underlying wallet material, or a separately assessed way to recover it. If the paper backup is missing but the device still works, preserve it and assess available options before resetting anything. If no usable backup, sufficient share set or accessible device remains, recovery may be impossible; a long random passphrase with no useful hints may be infeasible. PIN recovery is separate and depends on the model and firmware.
Frequently asked questions
Can you recover my Trezor passphrase if I still have my recovery seed?
It may be possible when the correct BIP39 backup or sufficient SLIP39 recovery shares survive and the passphrase search is practical. A receiving address from the intended hidden wallet helps verify candidates. The backup format and any missing material must be assessed first.
What is the difference between my Trezor PIN and my passphrase?
The PIN unlocks the physical device. A complete usable backup can restore the wallet on a replacement device without the original PIN. The optional passphrase is a separate input that derives a hidden wallet; it is not necessarily one word and is not stored on the Trezor device. Restoring a hidden wallet requires the correct backup and passphrase.
I am sure my Trezor passphrase is correct, but the wallet is empty. Why?
Check the exact input, correct backup, account path, synchronization and known-address history. BIP39 includes Unicode normalization, so not every difference in raw character encoding changes the derived wallet. A matching address is better evidence than a wallet interface accepting a passphrase; recovery is not guaranteed.
Do I have to send you my Trezor device or my seed?
Start by describing the model, backup type and available address information without sending secrets. Passphrase testing requires access to the correct underlying wallet material, but how it is handled is agreed explicitly after assessment and a written agreement. Device-level work is a separate case.
What if I do not remember the passphrase at all?
We can still try, but the realistic odds depend on how much structure you can give us: length, language, a theme, partial recall, or the keyboard you used. With good hints it is very often solvable; a long, fully random passphrase with no hints may be infeasible, and we will tell you honestly.
How much does Trezor passphrase recovery cost?
Free assessment; the standard fee is 20% of recovered value, payable only on success. No upfront payment. The scope and handling arrangements are agreed in writing before recovery work.
Locked out of your Trezor hidden wallet?
Start with a non-sensitive description of your problem and the backups or devices you still have. Do not attach recovery material in your first message. Contact KeychainX for an assessment.
Official KeychainX contact: mail@keychainx.io. Describe the problem first; keep recovery secrets out of the initial message.