What to Check Before Updating Your Hardware Wallet Firmware
Before upgrading your firmware, there are three critical things to check: your recovery seed phrase is at hand, your companion software is up to date, and your connection and battery are stable. Skip any of these and you could permanently lose access to your assets if the upgrade fails.
Prerequisites
You have the hardware wallet device and its original data cable.
You can power on the device and enter your PIN code normally.
You have the backup card or metal plate containing your recovery seed (12/24 words) handy.
Step 1: Make Sure Your Recovery Seed Backup Is Within Reach and Legible
This is the most important step, without question. During a firmware update, the device may be completely wiped due to storage format changes, major version jumps, or interrupted data transfer.
Trezor officially warns: Never update your firmware unless you have a valid wallet backup (recovery seed) at hand. If the device is wiped during the update, the PIN code cannot restore access. The only way to recover is by re-importing your wallet using the recovery seed.
What to do:
Find the backup card or metal plate where you wrote down your recovery seed.
Check word by word to ensure every word is complete, spelled correctly, and in the right order.
Look for any risk of illegibility due to moisture, smudging, or fading.
Completion criteria: You can read out the entire recovery seed completely and accurately, and you are certain it matches the assets on this hardware wallet.
If you cannot find your recovery seed, stop the upgrade immediately. Do not take chances. Trezor's recommendation is: Use your old software to transfer assets to a temporary wallet, create a new backup, and only then proceed with the upgrade.
Step 2: Check That the Companion Desktop Software Is Updated
Firmware upgrades are usually performed through the official companion software (such as Ledger Live, Trezor Suite, or the OneKey website). An outdated version of the software may not recognize the new firmware, or may not even show the update option.
Ledger officially states that the "App needs updating" error often stems from an outdated device firmware version, which prevents Ledger Live from installing the latest apps. The solution path is: update Ledger Live first, then update the device firmware.
What to do:
Check whether your Ledger Live / Trezor Suite is running the latest version.
If the software prompts you that "An update is available", finish the software update first, then connect your device and proceed with the firmware.
Completion criteria: The desktop software is updated to the latest version and can successfully recognize your hardware wallet.
Step 3: Confirm Device Battery Level and Connection Stability
If the device loses power or gets disconnected during the update, it may become "bricked".
What to do:
Battery: Make sure the device has sufficient battery (above 50%) or is directly powered via USB.
Cable: Use the original data cable that came with the device whenever possible. Third-party cables may only support charging and not data transfer, which can cause the upgrade to fail.
Connection: Plug the device directly into a USB port on your computer. Avoid USB hubs to reduce the risk of transfer interruptions.
Completion criteria: The device is connected to the computer, the screen is on and functioning, and the system indicates that the device is recognized.
Step 4: Know Your Current Firmware Version and Assess the Risk of a "Forced Wipe"
Certain firmware upgrades will force a device wipe. This is one of the most common and most overlooked risk factors.
Trezor's official documentation explicitly lists several situations that trigger a device wipe:
Installed firmware is unsigned (non-official firmware).
Current firmware is unsigned.
The firmware version to be installed is lower than the fix_version of the current firmware – this means the internal storage format has changed, and the older firmware cannot recognize the new storage structure, requiring an erasure and fresh start.
Installing a different "vendor header" on a Trezor T (e.g., switching from official firmware to unofficial firmware).
For Trezor One users, if your current firmware is version 1.6.1, the device will definitely be wiped during the update.
What to do:
Check the current firmware version number on the device's "About" page.
If you are using a Trezor and the version is 1.6.1, make absolutely sure your recovery seed is at hand before upgrading, because you will need to restore using the seed after the update.
If you are using another brand, consult the official documentation to confirm whether this version upgrade involves a wipe risk.
Completion criteria: You know the current firmware version number and understand whether this upgrade is likely to wipe the device.
Step 5 (Advanced): Verify the Firmware Hash (Optional but Recommended)
Some brands (such as OneKey) offer a checksum verification feature. You can view a checksum string on the device's "About" page and compare it against the official firmware hash published on GitHub to confirm the firmware hasn't been tampered with.
What to do:
Go to "System Settings" → "About Device" on the device and note the firmware checksum (e.g., OneKey shows a 7-character checksum like 5ff2c88).
Download the corresponding .bin firmware file from the official GitHub repository, calculate its SHA-256 hash using a script, and check whether the first 7 characters match.
Completion criteria: The checksum matches, confirming the firmware comes from an official source and has not been tampered with.
Common Causes of Failure
The biggest misconception: "As long as I remember my PIN, I can recover"
Many users assume that as long as they remember the PIN, the wallet can be automatically restored after a device reset. In reality, the PIN is only a device unlock code, not an asset recovery credential. After a firmware upgrade wipes the device, the PIN immediately becomes invalid. The only way to recover your assets is with the recovery seed. Without the seed, a failed upgrade means your assets are gone for good.
Risk Reminders
The upgrade is irreversible: Once started, do not unplug the device or close the software midway.
Older software versions may cause application incompatibility: If your firmware is too old, Ledger Live may not allow you to install the latest version of coin-specific apps. You must first upgrade the firmware, then install the apps.
Some updates will automatically reinstall apps: After a Ledger operating system update, applications are automatically reinstalled; you do not need to add them back one by one. However, if the firmware has been wiped, you must fully restore your wallet using the recovery seed, and then install apps.
How to Confirm a Successful Upgrade
After the upgrade completes, carry out these checks:
The device restarts normally and reaches the home screen.
You can unlock it with your PIN code.
Check the firmware version on the "About" page to confirm it has been updated to the target version.
Try initiating a small test transaction to confirm all wallet functions are working properly.
If the device asks you to "restore a wallet" or shows "No apps" after restarting, it means the device has been wiped. Don't panic. Take out your backup recovery seed and follow the on-screen instructions to complete the recovery process.
