Recovery phrases
Aura uses standard BIP39 recovery phrases. Address recovery also depends on the derivation path, account index and any optional phrase passphrase. The network directory lists the catalogued paths.
Mobile vault
The mobile vault uses XSalsa20 Poly1305 authenticated encryption. Its passcode key derivation uses PBKDF2 HMAC SHA512 through the BIP39 mnemonic seed function, which runs 2,048 iterations. A short passcode is not equivalent to a high entropy encryption password.
Extension vault
The browser extension uses a separate browser vault: WebCrypto PBKDF2 SHA512 with 310,000 iterations and AES256 GCM. Browser storage protection differs from mobile secure storage.
Import and export
Wallet import, phrase export and private key export are supported flows. Keep exported keys private. A view only wallet has a public address and cannot sign transactions.
Source reviewed . Live release verification remains separate.