Keys never leave the device
Private keys are generated, stored and used for signing inside the offline device.
An air-gapped wallet is a crypto signing device kept physically isolated from internet-connected hardware. It has no USB data, Bluetooth, Wi-Fi or NFC connection. Private keys are generated and stored on a chip inside the device, and signing stays offline.
To authorize a blockchain action, the wallet receives an unsigned signing request and returns a signed result. QR codes carry that data across the gap: the device scans the request, displays the details, signs inside the offline device and shows a new QR code for the App to scan.
Both approaches can keep private keys inside the hardware wallet. An air-gapped design adds physical separation from connected phones and computers: the signing device has no USB data, Bluetooth, Wi-Fi or NFC interface. QR codes carry signing requests and signed results across that gap without opening a direct electronic connection.
| Air-Gapped(QR code) | USB or Bluetooth(direct connection) | |
|---|---|---|
| Where private keys are stored | Generated and stored inside an offline signing device with no USB data Bluetooth Wi-Fi or NFC connection | Generated and stored inside the hardware wallet while USB or Bluetooth provides a data connection to a phone or computer |
| How signing works | The wallet scans a signing request then signs inside the device and displays the signed result as another QR code | The wallet receives a signing request then signs inside the device and returns the signed result through USB or Bluetooth |
| Practical trade-off | Physical separation from connected devices with a QR scan for each signing step | Direct communication with fewer manual steps during signing |
An air-gapped setup separates the online App from the offline signer. With the ELLIPAL Titan 2.0, each approval uses QR Code Signing.
The ELLIPAL Titan 2.0 holds the private key and signs each request inside the device.
The ELLIPAL App prepares the unsigned signing request, displays it as a QR code and broadcasts the signed result after approval. The ELLIPAL App does not hold the private key.
The ELLIPAL Titan 2.0 scans the request, shows the details for review, then signs and displays a QR code for the ELLIPAL App to scan. The private key stays inside the device throughout the signing process.
No WiFi, no Bluetooth, no USB data. It stays offline.
Confirm every transaction detail before you sign.
Full metal body, sealed shut. Tampering triggers an auto-wipe.
An air-gapped wallet is useful when you want the signing device physically separated from phones, computers and network connections. Removing USB data, Bluetooth, Wi-Fi and NFC reduces the electronic interfaces exposed during signing. QR codes still carry signing data between the wallet and the App without opening a direct connection.
Private keys are generated, stored and used for signing inside the offline device.
The phone or computer exchanges QR data without opening a USB or wireless session to the wallet.
A separate wallet screen lets you check the signing details before approval.
The extra QR scan suits users who prioritize physical separation over the quickest signing flow.
Explore the ELLIPAL Titan 2.0, or see the full security architecture behind every ELLIPAL product.