Firmware first
A new device ships without usable firmware, so the first job at start-up is installing the official release. Trezor Suite checks the signature of that firmware before it is written to the device.
Set-up guide · Reviewed September 2026
Everything that happens at the official trezor.io/start page — unpacking, firmware, PIN, recovery seed and your first transaction — explained step by step in plain English, together with the security habits that keep a hardware wallet worth owning.
The basics
Trezor.io/Start is the official first-run page for a new Trezor hardware wallet. It is where a freshly unboxed device becomes a working wallet: firmware is installed and verified, a PIN is chosen, the recovery seed is generated on the device, and the wallet is opened in Trezor Suite.
Short answer: Trezor.io/Start is the official Trezor onboarding page that pairs a new device with Trezor Suite, installs and verifies its firmware, and walks you through creating a PIN and writing down your recovery seed. You only ever need one page for it — the real one at trezor.io/start. This site is an independent guide that explains that process; it is not the Trezor website.
A new device ships without usable firmware, so the first job at start-up is installing the official release. Trezor Suite checks the signature of that firmware before it is written to the device.
Your private keys are generated inside the device and never leave it. The computer only ever sends requests and receives signed results — which is the whole point of a hardware wallet.
The recovery seed written down at start-up is your money. Nothing on the internet — this page included — should ever ask you to type it.
Before you begin
Start-up only goes wrong for a handful of reasons. All of them are avoidable in the first five minutes.
Order from the official Trezor shop or a listed authorised reseller. Marketplace listings and second-hand devices have no provenance, and a pre-seeded device looks completely normal.
Check the holographic seal and the box for cuts, resealing or missing accessories. Broken seals are a reason to return the device, not to carry on.
Set up on a machine you control and trust, with a USB data cable (not a charge-only cable) and the official Trezor Suite app installed from trezor.io.
Write your recovery seed alone, on paper, in a room with no cameras and nobody watching over your shoulder — including anyone on a video call.
There are no forms, no "wallet validation" and no sign-in on this site. Anyone who asks for your 12, 20 or 24 words — a website, an app, a support agent, a helpful stranger in your inbox — is stealing from you. Trezor support will never ask for it either.
The process
The first six steps take about twenty minutes. The last two are the ones people skip — and later regret. The full walkthrough, with what you should see on screen, is in the step-by-step set-up guide.
Download the desktop app from the official site only, then open it with the device still unplugged.
Use the supplied USB cable and let Suite detect the device. No browser extension or driver pack is needed.
Suite writes the current signed firmware. Only trust a firmware prompt that comes from Suite itself.
A brand-new wallet means "Create new wallet". Only choose recovery if you already hold a seed.
The words appear on the device screen, one at a time — never on the computer. Paper and pen, twice.
The PIN is entered on the device. A passphrase creates an extra hidden wallet — powerful, and easy to lose.
Suite asks you to confirm a few of the words. Do it — an unverified backup is a guess.
Generate a receive address on the device, send a small test amount, then confirm it appears in Suite.
Checklist
| Model | Screen & input | Typical fit |
|---|---|---|
| Trezor Model One | Small monochrome screen, two buttons | First hardware wallet, straightforward long-term storage |
| Trezor Model T | Colour touchscreen | Anyone who wants to type the PIN and see words on a touchscreen |
| Trezor Safe 3 | Compact screen, single button, secure element | A small, modern everyday device |
| Trezor Safe 5 | Larger colour touchscreen with haptics | Heavy users who want the most comfortable interface |
Specifications and availability change — confirm the current line-up on trezor.io. For the differences that matter during start-up, see our device comparison.
Security basics
A hardware wallet removes an entire class of attacks by keeping keys offline. The remaining risks are human ones — and they all centre on the same twelve words.
Paper, metal or a dedicated backup — never a screenshot, a cloud note or a photo roll. Digital copies are the most common route from "safe" to "gone".
Copycat pages buy ads and register near-identical domains. Bookmark the real ones —
trezor.io and suite.trezor.io — and reach them from the bookmark, not a search ad.
The screen on the device is the only source of truth. If the computer shows one address and the device another, stop — the computer is the one lying.
Quick answers
No. Start-up does not require an email address, a phone number or any online account. Trezor Suite is a local application; optional services such as buy-and-sell partners ask for their own KYC, but the wallet itself works without any of it.
The desktop build of Trezor Suite is the recommended route for start-up and everyday use. A web version exists, but a locally installed app removes one layer of browser risk during the one moment your device is most vulnerable: firmware installation.
Yes. Devices usually ship without firmware so that the first thing installed is a version you chose and Suite verified. Suite will show an "install firmware" prompt on first connect.
Stop. A genuinely new device offers to create a new wallet. If it is already initialised, if it arrives with a seed card filled in, or if the packaging was open, treat it as compromised and return it to the seller.
Suite runs on desktop. Some use cases work from a mobile browser with a compatible wallet app, but initial set-up — firmware, seed generation, backup verification — is far clearer on a computer.
Work through the eight steps with the walkthrough open next to you — then set the device up once, properly, and leave it alone for years.