Tangem sells a hardware wallet that looks like a credit card. It costs around 55 dollars, has no battery, no cable, no screen and no seed phrase to write down. You tap it against your phone to sign a transaction. More than six million cards have been sold.
It is also the only wallet maker in this series that has received three separate security disclosures from the same research lab, rejected all three, declined to pay a bug bounty each time, and publicly questioned the researchers' motives on the grounds that they work for a competitor.
Both of those things are true, and neither one settles the question. This review works through what the disclosures actually allow an attacker to do, what Tangem's counter-argument gets right, and who the product genuinely suits.
The company
Tangem AG was entered in the Swiss commercial register on 28 July 2017, registered in the Canton of Zug under UID CHE-390.112.525, with share capital of CHF 1,600,000. Its registered purpose is the development, distribution and marketing of hardware and software. The register entry was last amended on 5 January 2026. [1][2]
Andrey Kurennykh is co-founder and has been identified as CEO across multiple sources and funding announcements. [3][4][5]
Beyond that, the leadership picture is genuinely unclear, and any reader checking independently will find contradictions. Tracxn names Kurennykh as sole founder. One secondary source names Kurennykh and Anselm Schmucki as co-founders. Moneyhouse lists current management as Mikhail Liashch, with Natalja Soldatova, Konstantin Shulga, Ke-Fei Lin and Juan Manuel Gomez Moreno also associated. Tangem's own company page features Konstantin Shulga, co-founder of Finery Markets, prominently. NorthData's register history shows several board changes over time. [1][2][6][7]
Funding totals approximately 23 million dollars across two rounds: an early round in January 2019 backed by Japan's SBI Group, and an 8 million dollar round in May 2023 led by Shima Capital. [3][4][5][8]
Headcount estimates range absurdly, from 11 to 50 on Wellfound, to 72 on PitchBook, to 114 on GetLatka, to "250+" on Tangem's own company page. Revenue estimates differ by more than a factor of two between databases, and none are audited. Tangem is private and publishes no financial statements. [7][9][10][11][12]
One disclosure a European buyer is entitled to. Tangem is listed on the leave-russia.org tracker under "reducing activities." The entry states that the company is Swiss-registered, maintains a local company in Russia, imports its Samsung-based NFC cards into the Russian Federation, and saw revenue decrease by more than 20% in 2024 compared with 2023. That is a factual disclosure, not an accusation, and there is no evidence connecting it to the security of the device. [11][13]
The products
| Product | What it is | Price |
|---|---|---|
| Tangem Wallet, 2-card pack | Two NFC smart cards sharing one private key | ~55 dollars |
| Tangem Wallet, 3-card pack | Three cards, three independent backups | ~70 dollars |
| Tangem Ring | Zirconium ceramic wearable, ships with 2 cards | ~150 dollars |
| Tangem Pay | Virtual Visa card inside the app | Free, hardware required |
[14][15][16][17]
The cards are credit-card sized, with no battery, no screen, no cable and no charging. They communicate with a phone over NFC at a range of roughly 0 to 5 cm. The chip is rated for a 25-year lifespan and carries a 25-year warranty. Dust and water protection is claimed at IP68 in some sources and IP69K in others, including Tangem's own pages. Cards are described as X-ray and EMP resistant. [15][18][19][20]
The Ring is a form-factor choice, not a security upgrade. It uses the same Samsung S3D350A secure element, the same EAL6+ certification and the same architecture as the cards. Tangem says as much itself. One reviewer puts it bluntly: a three-card set at 70 dollars delivers identical functionality at less than half the price. [17][21]
Over six million cards have been sold, available in around 200 countries. [17][22]
How it works without a seed phrase
This is the design decision that defines Tangem, and it deserves to be explained properly rather than treated as a gimmick.
The private key is generated on the card by a certified hardware random number generator inside the secure element, never leaves the chip, and all signing happens on-chip. Tangem states that nobody, including Tangem, can extract it. [16][21][23]
The secure element is a Samsung chip certified to Common Criteria EAL6+. Ledger Donjon's own report identifies the chip in the cards it tested as the Samsung S3D232A; Tangem's current documentation names the S3D350A for cards and Ring. [21][24]
Backup is not a seed phrase. It is duplication. During setup, the private key is cloned across every card or ring in the set over an encrypted NFC channel. Each device becomes a fully independent, interchangeable signing device for the same wallet. Lose one, the others still work. [16][21][25]
Since the 2.0 generation, a 12 or 24-word BIP39 seed phrase is optional. You can generate one in the app or import an existing one. If you do, the wallet becomes portable to any BIP39-compatible wallet. If you do not, it is not. [14][19][26]
Three rules follow from this, and affiliate reviews consistently underplay all three.
- If you lose every card in the set and never created a seed phrase, the funds are permanently gone. No phrase, no cloud backup, no support ticket recovers them.
- Backup cards can only be linked during initial setup. A two-card buyer cannot later add a third without creating a new wallet and moving funds across.
- Resetting a forgotten access code requires tapping a second linked card. [14][15]
The access code has a minimum of six characters with no maximum, and uses increasing delays after failed attempts. [15]
Firmware is deliberately non-updatable. Tangem presents this as a security property: nothing can be changed, so nothing can be tampered with remotely. It is also the reason none of the vulnerabilities below can ever be patched on cards already sold. [18][20][24]
Tangem cites independent audits by Kudelski Security, Riscure and Cure53, with no backdoors found. [18][19]
The app and SDK are open source. The card firmware is closed. Tangem's CTO has argued the open-source app means the community could maintain it if the company disappeared. Ledger Donjon's counter-observation is worth stating: the security-critical logic lives in Tangem's closed firmware running directly on the secure element and cannot be inspected, and the Samsung platform is equally opaque, so the system operates as close to a black box. [20][23][24]
And there is no screen. Transaction details appear on your phone, not on the device. Every other wallet in this series treats on-device verification as the core defence against a compromised computer or phone. Tangem does not have it. One reviewer names this explicitly as a meaningful trade-off for security-conscious users. [21]
Three disclosures, three rejections
Three separate findings from Ledger Donjon in fourteen months. This is the part of the story that matters most, and it needs to be reported without either dismissing the research or panicking about it.
| Published | Finding | Status |
|---|---|---|
| 15 May 2025 | Genuine check bypass on the Tangem Android application | [27] |
| 17 September 2025 | Tearing attack enabling accelerated brute force of the access code | Unpatchable [28] |
| 9 July 2026 | Laser fault injection allowing password reset without the old password | Unpatchable [24] |
The tearing attack, September 2025
Donjon found that cutting the card's power before a failed access-code attempt is registered prevents the card from logging that failure, so the security delay never activates. Combined with electromagnetic analysis to detect a correct guess, this allowed roughly 2.5 attempts per second. Donjon states this reduces the time to brute-force a four-digit code from about five days to under one hour, roughly a hundredfold speedup, on a rig estimated at around 5,000 dollars. An eight-character code would still take roughly 148 years. Responsible disclosure began on 12 June 2025. [28][29][30]
Tangem rejected it. The company concluded the technique "won't be classified as a vulnerability," arguing it causes guaranteed chip failure through repeated memory interruption and that the scenario is "purely academic." Donjon called the response disappointing and the arguments inaccurate, stating the cards it tested never died because the tearing process writes nothing to flash memory, and noting that resistance to this class of attack is required even for a basic EAL3-grade certification. [28][30][31]
The laser attack, July 2026
Donjon used laser fault injection on the Samsung S3D232A secure element to corrupt a single conditional check in Tangem's firmware, the one that verifies whether a card is in an authorised recovery state. A single laser pulse causes the SetPin instruction to accept a new password without knowledge of the existing password and without a backup card. After the reset, the attacker can sign transactions and move the funds. [24][32]
The practical constraints matter and belong in the same breath. Physical possession of the card is required. The attack is invasive: the card must be cut open, leaving damage that cannot be hidden. Donjon's laboratory setup cost approximately 250,000 dollars. Each reproduction took about two hours, and it worked on every card tested. It cannot be done by phishing, by malware, through a compromised phone, or by any remote route whatsoever. [24][32][33][34]
Donjon's own summary of user impact: there is no patch, but the attack is physical and invasive, so it cannot be performed covertly and the card returned intact. The vulnerability affects all Tangem cards currently in circulation and cannot be fixed, because the cards have no firmware update mechanism. Disclosure to Tangem was on 10 February 2026, publication on 9 July 2026, roughly 150 days later. [24][32][35]
Tangem rejected this one too, and questioned the source. The company called the risk to everyday users "virtually non-existent," described laser fault injection as a lab-only technique applicable to secure elements generally rather than anything specific to Tangem, and added that while Ledger Donjon presents itself as an independent research unit, it operates within Ledger, one of Tangem's largest competitors, and its findings should be read with that in mind. It again declined to pay a bug bounty. [32][35][36]
Tangem's counter-argument, which is not weak
The company points to River Financial's 2025 study putting more than 1.6 million BTC lost to self-custody mismanagement, argues there have been no known real-world losses from laser fault injection against any hardware wallet, and says it prioritises the attack vectors that actually drain wallets: obscure interfaces, malicious dApps and scam contracts. It also notes that in 2010 researcher Christopher Tarnovsky cracked an EAL4+ Infineon chip deployed in hundreds of millions of banking cards, the implication being that lab attacks on certified silicon are a permanent industry condition rather than a Tangem failing. [37]
That argument is worth taking seriously. Far more people lose crypto to lost backups and phishing than to laboratory equipment.
The comparison that makes it a story
Ledger Donjon disclosed lab-grade physical attacks against two rival products inside a single year. Trezor published the disclosure itself, credited the competitor that broke its chip, and framed the episode as evidence that its open model works. Tangem disputed the severity, refused the bounty and pointed at the researchers' employer. Same research lab, same class of attack, opposite institutional response. [38]
But state the fair caveat too. A conflict of interest does not make research wrong. Laser fault injection is an academically validated technique, Donjon published its methodology and reproduction steps in full, and the lead researcher published on black-box laser fault injection at France's SSTIC conference in 2020. Equally, Ledger's own history includes two large customer data breaches, so neither company holds the high ground on every axis. [35][39]
Other incidents
No breach of Tangem's own infrastructure and no customer data leak surfaced in this research. Tangem states no device has been hacked in real-world conditions since launch. After Trezor's breach of 13 August 2026 and SafePal's of 16 August, that absence is worth noting, with the caveat that it may reflect a smaller target rather than better practice. [19][22]
Whether Tangem operates a public bug bounty with published terms could not be confirmed. It declined bounty payments in both Donjon cases, which suggests either no formal programme or a very narrow one.
Assets, app and everyday use
Support covers roughly 16,000 assets across 85 or more blockchains, including Bitcoin, Ethereum and EVM networks, Solana and SPL tokens, and XRP. Tangem's own homepage cited 14,100+ at an earlier date, so the figure moves. [17][22][40]
The app handles send, receive, staking on supported chains including ETH, SOL and DOT through integrated providers, in-app buying, and swaps through third-party providers. NFTs can be managed via WalletConnect-supporting marketplaces. [18][19][20]
The hidden cost is the in-app swap spread, not the hardware. One review names this as the real cost stack and notes it is avoidable by swapping elsewhere and transferring in. [16]
Phone dependency is absolute. No NFC phone, no wallet. Requires iPhone 8 or later, or Android 6.0 or later with full NFC. [25][41]
Transactions do not route through Tangem servers. The app talks directly to public blockchain nodes, so blockchain access does not depend on the company's survival. [15][22]
Tangem Pay, and a specific warning for Greek readers
Tangem Pay is a virtual Visa card inside the Tangem app, funded with USDC on Polygon and spendable anywhere Visa is accepted, including through Apple Pay and Google Pay. It launched in late November 2025 across roughly 38 to 42 jurisdictions. [42][43][44]
The structure matters. Tangem Pay is provided by Paera LLC, issued by Third National, a licensed Visa partner, with Rain managing the card programme, Sumsub handling identity verification and Elliptic doing transaction monitoring. KYC is mandatory, though Tangem states it applies only to the payment account and not to the wallet, and that Tangem AG never sees or stores identity documents. [42][45][46]
There are no monthly or transaction fees. Costs are Polygon gas to top up and standard Visa foreign-exchange charges on non-dollar purchases, since the card settles in USD. For a Greek user spending in euro, that FX markup is a recurring cost, not an edge case. There is no cashback. [42][47]
Before you buy hardware expecting the card, verify availability. Sources directly contradict each other. One card-comparison site states EEA expansion has been live since 23 March 2026 and is MiCA-compliant, with the UK still pending. A June 2026 review states plainly that the UK and EU are not live, explicitly flags that earlier write-ups implied European availability that does not exist, and advises EU readers to treat it as coming rather than available. And a Bulgarian customer left a Trustpilot review in 2026 saying Tangem Pay was not possible in their region, calling the marketing misleading and reporting an unsuccessful refund request. [47][48][49]
Check the live country list at tangem.com before ordering. If you buy hardware for the card and cannot use it, that is precisely the complaint the Bulgarian reviewer made.
One review also notes that the programme operates under a Puerto Rico money transmitter licence held by the issuer, with no EEA or UK e-money licence named, and Tangem AG stating it does not operate the programme. If accurate, that is a meaningful disclosure for EU buyers and worth verifying. [48]
Regulatory position
The hardware wallet itself is non-custodial, so Tangem AG is not a CASP and needs no MiCA licence. Article 79 of the EU Anti-Money Laundering Regulation, applicable from July 2027, explicitly excludes manufacturers of hardware and software wallets. Under the Transfer of Funds Regulation, a licensed exchange must verify ownership of a self-hosted wallet for transfers above 1,000 euro.
Tangem Pay is the exception, and the distinction should be explicit. It is a regulated payment product with mandatory KYC delivered through third-party licensed entities. A reader who uses only the wallet is anonymous to Tangem. A reader who activates Tangem Pay is not. [42][45]
Credibility
Trustpilot rates Tangem 4.1 out of 5, from 700+ reviews at one capture and 902 reviews at a later one. That is materially better than the exchanges covered in this series and better than NGRAVE's review volume, though still a small sample against Trezor's thousands. [22][49]
App stores: iOS around 4.9 out of 5 from roughly 16,000 ratings, Google Play around 4.7. [22]
Positive themes: ease of use, no battery to charge, tap-to-sign simplicity, avoiding a paper seed phrase, and support responsiveness, with one reviewer reporting replies in under 15 minutes. [22][49]
Negative themes: recovery risk if every card is lost, fewer native integrations than desktop wallet suites, occasional support delays, shipping complaints, Tangem Pay regional availability and refund handling, and the absence of a physical card and cashback. [22][49]
How it compares
| Wallet | Form | Secure element | Firmware open | Screen | Seed phrase | Price |
|---|---|---|---|---|---|---|
| Tangem | NFC card or ring | Samsung EAL6+ | No | No | Optional | ~55 to 70 dollars |
| Trezor Safe 3 | USB device | EAL6+ | Yes | Yes | Required | ~79 dollars |
| Trezor Safe 5 | USB device | EAL6+ | Yes | Yes | Required | ~129 dollars |
| Trezor Safe 7 | USB or Bluetooth | TROPIC01 plus EAL6+ | Yes | Yes | Required | ~249 dollars |
| Ledger Nano Gen5 | USB, BT, NFC | EAL6+, closed | No | Yes | Required | ~179 dollars |
| NGRAVE ZERO | Air-gapped QR | EAL5+, EAL7 OS | No | Yes | Optional | ~398 dollars |
| SafePal S1 | Air-gapped QR | One | Partial | Yes | Required | ~50 dollars |
| Keystone 3 Pro | Air-gapped QR | Three | Yes, MCU blob excepted | Yes | Required | ~129 dollars |
| Cypherock X1 | Card set | Yes | Partial | Yes | Sharded | higher |
[14][17][21]
The honest positioning: Tangem is the cheapest, simplest and most-sold device in this comparison, and the only one that removes the seed phrase as a default attack surface. It is also the only one with no screen, and one of three with closed firmware.
Its real competitor is not Trezor or Ledger. It is SafePal at around 50 dollars, which is air-gapped and has a screen, or Cypherock, which also splits the key across cards but shards it rather than duplicating it.
Who it is for, and who it is not
Buy a Tangem if you want the simplest possible cold storage, you are storing a moderate amount for the long term, you would rather not have a paper seed phrase sitting in a drawer, and you will buy the three-card pack and separate the cards.
Do not buy a Tangem if you sign complex DeFi transactions and need to verify them on a trusted screen, if you want auditable firmware, or if you are storing an amount where a determined attacker with 250,000 dollars of laboratory equipment becomes a plausible threat model.
And whichever you choose: create the optional seed phrase at setup unless you have a specific reason not to. It converts an unrecoverable wallet into a recoverable one, and it costs nothing.
The risks, stated plainly
- Lose every card with no seed phrase and the funds are gone forever. Buy the three-card pack, store the cards separately, and understand that you cannot add a card later.
- No screen means you verify transactions on your phone. If the phone is compromised, the last honest display in the chain is gone.
- Two unpatchable vulnerabilities exist in every card sold. Both require physical possession and laboratory equipment, but neither will ever be fixed, and buying a new card today does not avoid them.
- The maker's response to security research is the reputational risk, more than the research itself. Three disclosures, three rejections, no bounty paid.
- Tangem Pay may not be available in Greece. Verify before buying hardware for it.
- Tangem Pay means KYC, unlike the wallet.
- The in-app swap spread is the real running cost. Swap elsewhere and transfer in.
- Buy only from tangem.com or an authorised reseller.
What we could not verify
Deliberately absent above: who currently runs Tangem AG and the complete founding team; employee headcount, where estimates range from 11 to 250+; revenue, profitability and valuation; the current scope of Tangem's Russian operations; whether a public bug bounty exists; whether Tangem Pay is live in Greece today; whether the Tangem Pay programme holds any EEA e-money authorisation; Greek-language interface and Greek-usable tax export; shipping times, VAT-inclusive euro pricing and warranty handling for Greece; and whether IP68 or IP69K is the correct current rating.
Frequently asked questions
Is Tangem safe after three security disclosures? For everyday threats, yes. Neither unpatchable attack can be performed remotely, by phishing, or through malware. Both require physical possession of your card plus laboratory equipment, and the laser attack destroys the card visibly. The reputational question is different from the technical one: Tangem rejected all three findings and paid no bounty, while Trezor publicly credited the same lab for breaking its chip.
What happens if I lose my cards? If you created the optional seed phrase, you restore on any compatible wallet. If you did not, and you lose every card in the set, the funds are permanently unrecoverable. This is the single most important thing to understand before buying.
Can I add a third card later? No. Backup cards can only be linked during the initial setup. Adding one means creating a new wallet and moving your funds.
Is the Ring more secure than the cards? No. Same secure element, same certification, same architecture. It is a form-factor choice. A three-card set costs less than half as much and does the same job.
Can I use Tangem Pay in Greece? Sources contradict each other, and at least one EU customer has publicly complained that it was unavailable in their country despite the marketing. Check the live country list before you buy.
How does it compare to a Trezor? Tangem is cheaper, simpler and has no seed phrase to lose. Trezor has a screen for verifying transactions, open and auditable firmware, and a published track record of engaging with security researchers. If you sign complex transactions, the screen alone justifies the price difference.
Sources
All accessed 19 August 2026.
- Moneyhouse, Tangem AG company register record, Zug, CHE-390.112.525
- NorthData, Tangem AG, Swiss commercial register history
- Tracxn, Tangem company profile, Jul 2026
- PR Newswire, "Tangem Successfully Closes Investment Round, Fueled by Shima Capital", 2 May 2023
- Startupticker.ch, "Fresh funds for crypto startup Tangem"
- businessmodelcanvastemplate, "Brief History of Tangem", Mar 2026
- Tangem, "The company", tangem.com/en/company/
- CB Insights, Tangem company profile
- PitchBook, Tangem company profile
- GetLatka, Tangem revenue and headcount estimate, Dec 2025
- Wellfound, Tangem team profile
- RocketReach, Tangem company information
- leave-russia.org, Tangem entry
- CryptoSlate, "Tangem Wallet Review 2026: Is the Seedless Backup Model Worth It?"
- Tangem Learning Hub, "Best Cold Wallet for Crypto in 2026"
- uwuu.ai, "Tangem Wallet Review 2026: Seedless and Safe?", Jun 2026
- CoinCodeCap, "Tangem Hardware Wallet Review", May 2026
- Blockchaincenter.net, Tangem Wallet product review
- Blockchainreporter, "Tangem Wallet Review 2026: Card and Ring Tested"
- Black Seed Ink, "Tangem Wallet Review (2026)", Dec 2025
- Tangem Learning Hub, "Tangem Ring vs Tangem Card", Jun 2026
- Coin Bureau, "Tangem Wallet Review 2026", Jan 2026
- BeInCrypto, "Tangem CTO on Security Without Seed Phrases", Apr 2025
- Ledger Donjon, "Bypassing Tangem Card Security with a Laser Attack", 9 Jul 2026
- Tangem Blog, "What to Know Before Buying a Tangem Wallet 2 or 3-card Set"
- Tangem, Pricing page
- Ledger Donjon blog index, "Tangem Genuine Check Bypass on Android Application", 15 May 2025
- Ledger, "The Vulnerability Exposing Tangem Cards to Brute-Force Attacks", 17 Sept 2025
- Blockonomi, "Ledger Security Team Flags Tangem Card Flaw Allowing Brute-Force Attacks", Sept 2025
- Protos, "Tangem wallet brute force vulnerability revealed by rival Ledger", Sept 2025
- Tangem Blog, "Rumor vs. Reality: Are Tangem Cards Vulnerable to Brute-Force Attacks?", 17 Sept 2025
- The Block, "Ledger researchers disclose Tangem card flaw; Tangem says risk to everyday users is 'virtually non-existent'", 10 Jul 2026
- The Hacker News, "Laser Attack Resets Tangem Wallet Passwords on Cards That Can't Be Patched", 10 Jul 2026
- Gate News, "Ledger Donjon Discloses Tangem Card Password Reset Vulnerability Via Laser Attack", Jul 2026
- BTCtiming, "Ledger Donjon: 6M Tangem Cards Unpatchable to Laser Flaw", 10 Jul 2026
- Incrypted, "Ledger and Tangem Publicly Argued Over a Wallet Hack via a Laser Attack", 10 Jul 2026
- Tangem Blog, "Our Comment on Ledger Donjon's Latest Article", 9 Jul 2026
- Spoted Crypto, "Trezor Safe 7 TROPIC01 Chip Flaw: Ledger Laser Attack Explained", Jun 2026
- Korben, "Tangem, the laser flaw that leaves your crypto card vulnerable forever", 11 Jul 2026
- Tangem homepage
- CEX.IO University, "Tangem Wallet Review 2026", Apr 2026
- Tangem Blog, "Tangem Pay is Now Available to All Users in Select Regions Worldwide", May 2026
- Cryptopolitan, "Tangem brings self-custody to payments with global USDC Visa card", Nov 2025
- Cointelegraph via TradingView, "Self-custody meets KYC: Tangem launches Visa payments with Paera", Nov 2025
- The Paypers, "Tangem Pay to begin its gradual launch", Nov 2025
- CryptoCardHub, Tangem Pay card details
- CryptoWatchdog, "Tangem Pay Review 2026", Jun 2026 (flags EU non-availability)
- CardPilled, Tangem Pay card review (claims EEA live since 23 Mar 2026, conflicts with 47)
- Trustpilot, tangem.com reviews
Πληροφοριακό υλικό μόνο. Δεν αποτελεί επενδυτική συμβουλή. Η αγορά κρυπτονομισμάτων ενέχει υψηλό κίνδυνο.
Information only. Not investment advice. Cryptocurrency markets carry substantial risk.