Trust
Is this safe?
Short answer: we encrypt your key so only your browser can open it, but for a moment one of our GPUs does see it. Here's exactly what that means.
The honest part
To find your address, a GPU has to generate its private key, so the GPU worker briefly sees it. That's true of any service that grinds normal, importable wallet keys for you. If someone claims otherwise, ask them how.
What we can control is everything after that, and we've built it so that the key never sits anywhere readable.
Our advice: a vanity wallet is great for receiving, showing off and everyday use. Keep serious savings on a hardware wallet.
How we protect your key
- Only your browser can open it. Before you pay, your browser creates its own encryption key, which never leaves your device. The GPU encrypts your result to it (RSA-OAEP with AES-256-GCM). Our servers and our GPU provider only ever store that ciphertext. Without your browser's key, nobody, us included, can open it.
- Your browser checks it. After decrypting, your browser re-derives the address from the private key and checks it starts with your word. A corrupted or swapped key can't slip through.
- Short-lived on the GPU. The worker keeps key files and logs in RAM-backed temporary storage and deletes them when the search ends. That's a deletion, not a hardware guarantee, which is why we say "briefly sees" above.
- Gone after 7 days. We delete encrypted results 7 days after the order. When you click done, your browser forgets its key too.
- No trackers. No ads or analytics run on our pages. The only outside code is Cloudflare's human check, which loads when you place an order to keep bots out of checkout.
How we protect your payment
- The only thing you sign is one SOL transfer to our address for your order. Your browser checks the exact amount, recipient and order reference before your wallet even sees it.
- We tie your order to the wallet you connect, and only a payment from that wallet counts.
- We only start once the payment is final on Solana. If you close the tab after paying, we still find your payment.
- If we can't deliver (the search runs out of time, a GPU fails, or you cancel), we automatically refund the full price to the wallet that paid. We can't refund Solana network fees.
What we'll never do
- Ask for your seed phrase, or for the private key of any wallet you already own.
- Ask you to sign anything other than that one payment.
- DM you first. Our only official account is on X, and support always starts with you.
pump.fun launches
You only need a mint keypair once, to create your token. After launch, the token's authorities and pump.fun's program rules control it, not the mint key. Once your token exists, the key is mostly a souvenir.
Before launch it still matters. Anyone holding the key could create a token at that address first. Launch soon after you get it, and treat it like a password until you do.
Launching here. Our API builds the pump.fun transaction, and your browser checks every account and setting in it before signing with your mint key, which never leaves your device. Your wallet is the creator and pays pump.fun's account rent and the network fee. There's no dev buy, and we couldn't sneak one in: your browser would refuse the transaction. We host your coin's image and details so pump.fun can show them, and nobody can change them after launch.
How to stay safe
- Save your key somewhere offline or encrypted, like a password manager. Anyone who has it controls the address.
- Keep the recovery file private until your order finishes. It's what lets a browser open your result.
- Check that you're on notrandom.fun before you connect a wallet.
- Never paste your key into a site or chat because "support" asked you to.
Still unsure?
That's healthy. Start with a short word on a fresh wallet and see how it works before you use it for anything that matters. Questions? Reach us on X.