Trezor Review 2026
Published: 15 May 2026 Last updated: 29 July 2026
Price: Legacy model; reseller prices vary
Pros
- Open-source firmware and hardware designs
- Touchscreen keeps sensitive entry on the Model T itself
- Wired operation without Bluetooth on Model T
- BIP39 and SLIP39 Multi-share Backup support
Cons
- Model T is no longer sold in Trezor's official e-shop
- No Secure Element on Model T or Model One
- Limited iOS functionality compared with Trezor Safe 7
Quick verdict
Trezor remains a strong hardware-wallet choice for people who want open-source device software, on-device transaction confirmation, and flexible backup options. The main buying decision has changed, though. Trezor stopped selling Model T and Model One in its own e-shop on 8 January 2026. New buyers should normally compare the current Safe lineup rather than treating Model T as the flagship.
Safe 3 is the practical value choice, Safe 5 adds a more comfortable touchscreen, and Safe 7 is the premium mobile-focused model. Existing Model T owners do not need to panic: Trezor says critical security support will continue until at least 2036. They should understand that Model T lacks the Secure Element used by newer Safe devices and should use a strong PIN, consider a carefully managed passphrase, and protect the wallet backup offline.
What we checked
This update uses Trezor's current product comparison, supported-coin directory, device-support schedule, backup documentation, Secure Element explanation, and firmware-authenticity guidance. We did not perform a funded transaction, destructive hardware test, or laboratory security audit.
Read our review methodology →What is Trezor?
Trezor is a family of self-custody hardware wallets created by SatoshiLabs. A Trezor keeps the keys used to sign crypto transactions away from an internet-connected computer or phone. Trezor Suite prepares the transaction, the device displays the details, and the user approves or rejects it on the hardware.
This reduces exposure to malware that tries to steal keys from a normal software wallet, but it does not remove user responsibility. A hardware wallet cannot correct a wrong network, recover a lost backup and passphrase, or tell you that every smart contract is trustworthy. Our hot wallet versus cold wallet guide explains where hardware wallets help and where they do not.
Which Trezor model should you buy?
Trezor's current retail range centers on Safe 3, Safe 5, and Safe 7. Model One and Model T are legacy models that remain supported but are no longer sold in Trezor's e-shop. The best choice is determined more by controls, physical-attack protection, mobile access, and budget than by headline coin counts.
| Model | Controls | Physical protection | Mobile fit | Buying context |
|---|---|---|---|---|
| Safe 3 | Two buttons, monochrome screen | EAL6+ Secure Element | Android by USB-C; limited iOS use | Best-value current model |
| Safe 5 | Color touchscreen and haptics | EAL6+ Secure Element | Android by USB-C; limited iOS use | Better daily interface |
| Safe 7 | Larger color touchscreen | Dual Secure Elements plus hardened MCU | Full Android and iOS support; Bluetooth or USB-C | Premium mobile-focused model |
| Model One | Two buttons, monochrome screen | No Secure Element | Desktop and Android; no full iOS signing | Legacy model; official e-shop sales ended |
| Model T | Color touchscreen | No Secure Element | Desktop and Android; no full iOS signing | Legacy model; official e-shop sales ended |
Trezor's current model comparison is the best place to confirm the live lineup and regional pricing. Safe 3 and Safe 5 use the same EAL6+ Secure Element design; the larger difference is buttons versus touchscreen. Safe 7 adds a larger display, Bluetooth, and full iOS support. Existing Model T owners can read Trezor's legacy-device support schedule before deciding whether an upgrade is useful.
Best for and not ideal for
Trezor is best for
- Long-term self-custody: users moving a meaningful balance away from an exchange or everyday hot wallet.
- Open-source transparency: buyers who value firmware and hardware designs that can be inspected publicly.
- On-device verification: users who want to check addresses and transaction details on a separate screen before signing.
- Flexible recovery planning: people who understand offline backups and may benefit from SLIP39 Multi-share Backup.
- Bitcoin and major-asset storage: users whose exact coins and networks appear in Trezor's live compatibility directory.
Trezor is not ideal for
- Anyone unwilling to take responsibility for an offline wallet backup and recovery process.
- People who need frequent trading or DeFi signing and would find repeated hardware confirmation disruptive.
- iPhone-first users considering Safe 3, Safe 5, Model One, or Model T; Safe 7 is the Trezor designed for full iOS use.
- Holders of a specific niche coin or network who have not confirmed model and app compatibility.
- Users looking for seedless card recovery; the Tangem Wallet review covers a different recovery and form-factor trade-off.
If the choice still feels unclear, use the Wallet Finder or compare the broader shortlist in our best hardware wallets guide.
Is Trezor safe?
Trezor is designed to keep signing keys offline and require physical confirmation. That is a meaningful protection against remote key theft, but "safe" depends on the threat being considered. The newer Safe devices improve resistance to a stolen-device attack; no model protects a user who exposes the wallet backup or confirms a malicious transaction.
Open-source advantages and limits
Trezor publishes device software and hardware designs for public review. This allows researchers to inspect how keys are generated, stored, and used instead of relying only on a vendor's description. Open source is a transparency advantage, not a guarantee that every implementation is flawless or that every user action is safe.
Secure Elements and physical attacks
Safe 3 and Safe 5 use an EAL6+ Secure Element to enforce PIN protection, contribute randomness during setup, and help Trezor Suite verify device authenticity. Trezor says the Secure Element releases a secret needed to decrypt keys only after the correct PIN is entered and resets after repeated failed attempts.
Model T and Model One do not have that hardware-enforced PIN layer. Published research has demonstrated physical extraction paths against legacy Trezor hardware when an attacker possesses the device and has specialist equipment. Trezor's own security guidance recommends a long, random PIN for these models. A properly managed passphrase can protect a separate wallet even if the backup or device is compromised, but it creates an additional way for the owner to lose access.
PIN and passphrase protection
The PIN prevents casual access to the device. It does not replace the wallet backup. Safe 3 and Safe 5 enforce PIN attempts through their Secure Element, while Model T and Model One rely on encrypted storage and increasing delays without the same hardware-enforced limit.
A passphrase creates a different wallet from the same backup. It is case-sensitive, is not stored by Trezor, and cannot be reset. Entering a typo opens another valid but usually empty wallet. This feature can reduce the impact of a stolen backup, but only when the owner has a clear storage and inheritance plan for the exact passphrase.
Firmware and supply-chain verification
Trezor Suite checks firmware revision and firmware integrity when a device connects. Safe devices also use a device certificate stored with their Secure Element for authentication. These checks improve counterfeit and tampering detection, but buyers should still inspect the packaging, use an official download, and stop if the app shows a failed authenticity check. Never accept a recovery phrase supplied by a seller.
Backup and recovery
The wallet backup is the recovery key to the funds. Depending on the model and setup date, Trezor supports 12- or 24-word BIP39 backups and 20-word SLIP39 backups. Model One uses BIP39. Model T supports BIP39 and SLIP39. Current Safe 3, Safe 5, and Safe 7 setups default to a 20-word SLIP39 Single-share Backup, while other supported formats can be selected.
Store the backup offline and away from the device. Do not photograph it, place it in cloud notes, type it into a website, or share it with anyone claiming to be support. Use Trezor Suite's backup-check function before relying on a new backup. Our seed phrase safety guide covers storage, verification, and inheritance mistakes in more detail.
Multi-share Backup, formerly Shamir Backup
SLIP39 Multi-share Backup can divide recovery into as many as 16 shares with a chosen threshold. A three-of-five setup, for example, can recover the wallet with any three valid shares. Fewer than three shares cannot restore it. This helps distribute loss and theft risk across locations, but it also makes recovery planning more complex.
Do not manually divide a normal BIP39 phrase into pieces. That is not equivalent to SLIP39. If a Single-share Backup is upgraded to Multi-share, Trezor notes that the original Single-share can remain valid; verify the new backup before changing how the old one is stored. Trezor's backup-format guide lists the formats supported by each device.
Supported cryptocurrencies and networks
Trezor describes support for thousands of coins and tokens across its current devices. Major assets such as BTC, ETH, USDT, and DOGE are listed, but some assets work only on certain models or through a third-party wallet rather than directly in Trezor Suite.
Check the official supported-coins directory using four filters: the exact coin or token, blockchain network, Trezor model, and compatible app. This is especially important for USDT because the same ticker can exist on several networks. Sending on an unsupported or mismatched network can make recovery difficult or impossible. See our guide to choosing the correct USDT network before transferring stablecoins.
Trezor Suite, mobile use, and fees
Trezor Suite is the official management application for setup, accounts, receiving, sending, firmware updates, backup checks, and supported buy, sell, swap, and staking routes. Desktop support covers Windows, macOS, and Linux. Any Trezor can connect to a compatible Android device by cable; Safe 7 adds full iOS and Android support over Bluetooth. Other models have limited iOS functionality and are not equivalent to Safe 7 for mobile signing.
| Action | Possible cost | What to check |
|---|---|---|
| Buy the device | Hardware price, tax, and shipping | Official shop or authorized reseller; current regional total |
| Send crypto | Blockchain network fee | Network, destination address, and fee estimate |
| Buy, sell, or swap in Suite | Third-party provider fee, spread, and network cost | Provider, KYC prompt, final quote, and receive amount |
| Use a third-party wallet or dApp | Network fee and possible app/protocol costs | Contract, token approval, network, and device display |
Trezor does not charge a custody fee for holding keys on the device. Blockchain fees go to the network. Integrated trading services are provided by third parties and can add spread, processing fees, KYC, and regional restrictions. Review the final quote rather than assuming that an in-app route is the cheapest.
Setup and common mistakes
- Buying used or from an unknown marketplace: purchase through the official store or a listed reseller and verify the device through Trezor Suite.
- Accepting a pre-written backup: the device should generate a new wallet backup during your own setup. A supplied phrase is compromised.
- Saving the backup digitally: photos, cloud storage, email, and password-manager entries expose the recovery secret to online attacks.
- Using a passphrase without a recovery plan: there is no reset route, and a typo produces a different wallet.
- Skipping the on-device address check: malware can replace a copied address on the computer. Compare the full address shown on the Trezor.
- Sending a large first transfer: confirm the asset and network, send a small test, and verify that recovery records are complete before moving more.
- Blindly approving dApp requests: a hardware wallet protects keys, not the intent of a malicious smart contract or unlimited token approval.
These errors are not unique to Trezor. The common crypto wallet mistakes guide provides a broader checklist for downloads, backups, networks, test transactions, and phishing.
Trezor vs Ledger, Tangem, and software wallets
| Option | Main advantage | Main trade-off | Practical fit |
|---|---|---|---|
| Trezor Safe 3 / Safe 5 | Open-source device software, screen confirmation, Secure Element | Backup and passphrase remain user responsibilities | Long-term storage with transparent security design |
| Ledger | Broad app ecosystem and Secure Element-based devices | Core device firmware is not fully open-source | Users prioritizing asset/app breadth |
| Tangem | Simple card-and-phone workflow | No screen on the card for transaction verification | Users prioritizing portability and a simpler form factor |
| Software wallet | Free and convenient for frequent use | Keys remain on an internet-connected device | Smaller active balances and regular transactions |
For a direct brand comparison, read Ledger vs Trezor. The Ledger Nano X review covers Bluetooth and Ledger's app model, while the Ledger Nano S Plus review compares a lower-cost wired option. Tangem takes a different approach based on cards and a phone app; see the full Tangem review. For hot-wallet alternatives and broader custody choices, compare the best crypto wallets.
Final verdict
Trezor's strongest case is the combination of offline signing, clear on-device confirmation, open-source transparency, and well-documented recovery options. For a new buyer, Safe 3 offers the most practical entry point if buttons are acceptable, while Safe 5 is easier to use for regular on-device entry. Safe 7 is the relevant premium choice when full iPhone support and wireless use matter.
Model T remains usable and supported, but it is now a legacy purchase rather than the obvious premium Trezor. Existing owners should focus on a strong PIN, firmware updates, backup checks, and careful passphrase management. New buyers should compare current Safe devices, verify exact coin and mobile compatibility, and buy only through an official source.
Frequently Asked Questions
Is Trezor safe?
Trezor keeps private keys offline and requires transaction approval on the device, which protects against many online attacks. It is not risk-free. A stolen legacy Model T or Model One has a different physical threat profile from a Safe 3, Safe 5, or Safe 7 with Secure Element protection. Phishing, an exposed wallet backup, a forgotten passphrase, and approving the wrong address can still lead to loss.
Which Trezor should I buy in 2026?
Safe 3 is the practical lower-cost choice for users comfortable with buttons. Safe 5 adds a color touchscreen and haptic feedback while retaining the EAL6+ Secure Element. Safe 7 is the current premium option for full iOS and Android use through Bluetooth or USB-C. Model One and Model T left Trezor's official e-shop in January 2026, so they make more sense for existing owners than most new buyers.
Is Trezor Model T still supported?
Yes. Trezor states that Model T and Model One will receive critical security updates until at least 2036, basic maintenance until at least 2031, and new coin support for Model T until at least 2031. Official e-shop sales ended on 8 January 2026, so reseller stock and pricing require extra care.
Which cryptocurrencies does Trezor support?
Trezor lists thousands of coins and tokens, including major assets such as BTC, ETH, USDT, and DOGE. Support differs by Trezor model, blockchain network, Trezor Suite, and third-party wallet integration. Search the live Trezor coin directory for the exact asset, network, model, and app before buying or transferring funds.
Is Trezor open-source?
Trezor publishes its device firmware and hardware designs for public review. That transparency makes independent inspection possible, but open-source code does not mean a device is free from vulnerabilities. The Secure Elements used in the current Safe lineup add physical protection alongside Trezor's open-source software approach.
What is Shamir Backup on Trezor?
Trezor now calls this Multi-share Backup. It uses the SLIP39 standard to divide a wallet backup into several 20-word shares and requires a chosen threshold, such as three of five shares, for recovery. It is supported by Safe 3, Safe 5, Safe 7, and Model T. It should not be confused with manually splitting a normal BIP39 phrase.
Can I recover funds if my Trezor is lost or broken?
Yes, if you still have the correct wallet backup and any passphrase used for that wallet. The PIN protects the physical device but is not required to restore on replacement hardware. If the wallet used a passphrase and that passphrase is forgotten, the backup alone cannot recover the passphrase wallet.
Should beginners use a Trezor passphrase?
Only after understanding the failure risk. Each exact passphrase creates a separate wallet, and a typo opens a different empty wallet. Trezor cannot reset or recover a forgotten passphrase. Beginners should first master their normal wallet backup, recovery check, and secure storage process.
Can I use Trezor with MetaMask?
Yes, supported Trezor models can work with MetaMask as a hardware signing device. MetaMask provides the Web3 interface while the Trezor confirms transactions. The hardware wallet does not make every dApp or token approval trustworthy, so check the contract, network, address, and permission before signing.
Compare the current Trezor lineup and verify the model, price, compatibility, and shop terms before ordering.
View Trezor WalletsHow We Evaluate Wallets
Our wallet assessments are based on publicly available technical information, community security research, and user experience reports. We evaluate wallets across five areas:
- → Security architecture: Whether the wallet uses a secure element chip, open-source code, and offline key storage.
- → Coin support: Range of cryptocurrencies and blockchain networks the wallet supports.
- → Ease of use: How approachable the wallet is for beginners without sacrificing security.
- → Track record: The wallet developer's history regarding security incidents, disclosures, and updates.
- → Value for cost: For hardware wallets: whether the price reflects the security and features provided.
CryptosHub does not guarantee that any wallet is free from risk. All ratings are editorial opinions based on publicly available information and are not financial advice.