페이지를 넘기고 있습니다.
다음 장을 불러오고 있습니다…
잠깐… 나만의 읽기 환경을 만들어 보세요.
글꼴과 테마는 화면 설정에서 설정하세요. 눈의 편안함도 중요합니다.
다음 장을 불러오고 있습니다…
The word-list standard for mnemonic seeds used by most wallets.
브라우저의 읽어주기 지원을 확인하는 중…
이 읽기 자료는 현재 영어로 제공됩니다. 인터페이스에는 선택한 언어가 적용됩니다.
영어 원문 읽기 →BIP-39 describes both constructing a mnemonic from entropy and deriving a binary seed from a mnemonic. A checksum is appended to the entropy before the resulting bits are mapped to word-list indices. The later seed derivation uses the mnemonic and an optional passphrase with defined normalization and key-derivation rules. Keeping these stages separate prevents a common misconception: the displayed words are not simply a list of independently selected secret passwords, and the optional passphrase is not one more checksum word.
The specification permits entropy lengths from 128 to 256 bits in steps of 32, producing twelve, fifteen, eighteen, twenty-one, or twenty-four words. At the 256-bit setting, eight checksum bits make 264 total bits, which divide into twenty-four eleven-bit indices. This arithmetic describes the format without generating a usable recovery phrase. Published test vectors are valuable for checking an implementation, but they are known to everyone and must never be treated as secret material for a funded wallet.
A compatible mnemonic does not identify which accounts and address types an application used. The derived seed still feeds a key hierarchy and discovery process. An additional passphrase changes the resulting seed, so a typo can lead to a different valid wallet rather than a helpful error message. A local wallet password may have another role entirely, such as encrypting files. Recovery documentation should distinguish the mnemonic, any derivation passphrase, account paths, and local credentials.
BIP-39 compatibility alone does not promise that two wallets will display the same accounts automatically.