Wallet Security and token approvals
What Wallet Security does
Wallet Security scans the token approvals a wallet has granted. An approval is permission you gave to an app or an address to move a token out of your wallet. Approvals stay in place after you stop using an app, so they build up quietly over time.
The page shows you every open approval Cognivo can read, flags the ones that are unlimited, and lets you revoke any of them from your own wallet.
Despite the name, this page is about permissions on the blockchain. It does not manage your Cognivo login. For your account, language and privacy options, see Account and settings.
When to use it
Use it when you are asking one of these questions. Which apps can still take tokens out of my wallet? Did that swap I did months ago leave an unlimited permission behind? I connected to something I now regret, how do I cut it off?
It is a good habit to run this on any wallet that has traded on decentralised exchanges, minted, or connected to a site you did not know well.
Where to find it
In the dApp, open Security from the left sidebar, under the Intelligence group. The page is titled Wallet Security.
- Paste the wallet you want to check into the Wallet address field, pick its Network, then select Scan.
- Note the Free scan chip. Checking your approvals is always free, and Cognivo only reads your wallet.
- Read the What works on Robinhood right now panel to see which checks are Live on that network and which are still Not available.
- Select Open the Robinhood Chain console to carry on in the Robinhood chain console.
The Wallet address field takes any address that starts with 0x and is 42 characters long. You do not need to own the wallet to scan it. The Network list covers Ethereum, Base and BNB Chain, which appears as BSC.
What you get back
When approvals are found, you get four counts at the top: total approvals, unlimited approvals, elevated risk, and the number of distinct spenders. Below that is one row per approval, with the token symbol, a risk badge, whether the allowance is limited or unlimited, the spender name or address, and links out to the block explorer for both the token and the spender.
You can filter the rows by All, Unlimited or Elevated risk, search by token or spender, change how many rows show per page, and share the result to Telegram or X or copy it.
Three other results are possible, and each one means something different.
No approvals found. Cognivo read the wallet and found nothing open, so there is nothing to revoke. On Base and BNB Chain, Cognivo adds a note that this is an observed lower bound over the scanned window and not a lifetime guarantee.
Couldn't scan approvals. The read did not complete, and Cognivo names the reason, such as a timeout or a data source that was temporarily unavailable. This is not the same as a clean wallet. The page says so directly: no result means unknown, not safe. Use Retry.
Scan failed safely. The request itself failed. Nothing was charged and nothing was changed. Use Retry.
A risk badge describes what Cognivo observed about the approval, such as an unlimited allowance. It is not a verdict on the app behind the spender. Cognivo cannot confirm whether any spender is safe or harmful, so read each row and decide for yourself.
Revoking an approval
Each row has a Revoke button. Cognivo prepares the transaction that sets that spender's allowance back to zero and hands it to your own connected wallet to sign. Cognivo never sees a key or a seed phrase and never signs anything on its own.
Two things follow from that. First, revoking sends a real transaction, so it costs network gas paid from your wallet. Second, you must connect the same wallet you scanned. If a different account is connected, the Revoke buttons are disabled and an amber banner tells you which address to connect.
If you cancel in your wallet, nothing happens on chain and nothing is spent.
Cost
Scanning is free. The page carries a Free scan badge and the line "Checking your approvals is always free." No credits are used, and Cognivo only reads the wallet. The only cost anywhere on this page is the network gas for a revoke you choose to send. See Tools and costs for the three tools that do use credits.
What it does not check
This tool looks at the permissions a wallet has granted. It does not judge the token contracts themselves. For contract level checks such as ownership, mint rights and trading restrictions, use Token and contract analysis. To understand a wallet's behaviour and history, use Wallet Intelligence.