Wallet & key security

How Starchild wallets hold keys, authorize agents, and keep custody with you.

User-owned, non-custodial wallets

Every Starchild wallet is a user-owned embedded wallet powered by Privy. Starchild does not take custody of your funds or hold a complete private key that can move assets on its own.

Keys split with Shamir secret sharing

The private key is split into three shares: a device share, a Privy TEE share, and a user recovery share. Reconstructing the key requires any two of the three, so a single compromised share is not enough to move funds.

Export your private key anytime

You can export the full private key whenever you want. Export happens on a different origin from the Starchild app and from Privy admin surfaces, so neither Starchild nor Privy can observe the key during export.

Agent automation is policy, not custody

Trades while you sleep means pre-authorized spending policies with limits, allowlists, and chain rules. The agent signs inside those bounds. It is not a handoff of custody or an open-ended transfer of control.

Revoke agent signing rights anytime

You can revoke the agent's signing rights at any time. When you revoke, policy-bound automation stops and the wallet remains yours. Pair this page with Agent Wallet for day-to-day balances, sends, and DeFi actions.