{
  "$schema": "https://degreesofsatoshi.com/encyclopedia/schemas/article-v1.json",
  "schemaVersion": "1.0.0",
  "id": "bitcoin-12-vs-24-word-seed",
  "canonical": "https://degreesofsatoshi.com/encyclopedia/bitcoin-12-vs-24-word-seed/",
  "collection": "bitcoin",
  "title": "12 versus 24 seed words: entropy, checksums and compatibility",
  "description": "Compare 12- and 24-word BIP-39 mnemonics using entropy and checksum arithmetic, while keeping wallet-format compatibility separate.",
  "aliases": [
    "12 vs 24 word seed phrase",
    "12 vs 24 word seed phrase explained"
  ],
  "dates": {
    "published": "2026-10-02",
    "modified": "2026-10-02",
    "verified": "2026-10-02T19:29:20.637Z",
    "dataAsOf": "2026-10-02"
  },
  "authorship": {
    "publisher": "Degrees of Satoshi editorial project",
    "process": "AI-assisted research and drafting with a separate automated source-verification pass; no external expert or named human review is implied."
  },
  "quickAnswer": {
    "text": "In BIP-39, a correctly generated 12-word mnemonic encodes 128 entropy bits plus a 4-bit checksum; 24 words encode 256 entropy bits plus an 8-bit checksum. More words increase that generated entropy, but they do not fix exposed backups or a compromised signer. Word count also does not identify the wallet format: Electrum’s native mnemonic system is different from BIP-39.",
    "claimId": "bitcoin-12-vs-24-word-seed-quick-answer",
    "sourceIds": [
      "x425-btc-bip39",
      "x425-btc-electrum-seed",
      "x425-btc-secure"
    ]
  },
  "keyFacts": [
    {
      "label": "12 words",
      "value": "128 entropy bits + 4 checksum bits",
      "sourceIds": [
        "x425-btc-bip39"
      ],
      "id": "12-words",
      "claimId": "bitcoin-12-vs-24-word-seed-fact-12-words"
    },
    {
      "label": "24 words",
      "value": "256 entropy bits + 8 checksum bits",
      "sourceIds": [
        "x425-btc-bip39"
      ],
      "id": "24-words",
      "claimId": "bitcoin-12-vs-24-word-seed-fact-24-words"
    },
    {
      "label": "Compatibility",
      "value": "Check the mnemonic system, not only length",
      "sourceIds": [
        "x425-btc-electrum-seed"
      ],
      "id": "compatibility",
      "claimId": "bitcoin-12-vs-24-word-seed-fact-compatibility"
    }
  ],
  "prerequisites": [
    "private-keys-and-seed-phrases",
    "bitcoin-wallet-passphrases"
  ],
  "sections": [
    {
      "id": "arithmetic",
      "heading": "Each BIP-39 word represents eleven encoded bits",
      "sourceIds": [
        "x425-btc-bip39"
      ],
      "paragraphs": [
        "The wordlist contains 2,048 entries, so each word represents an 11-bit index. For 12 words, 12 × 11 = 132 encoded bits; 128 are entropy and four are checksum. For 24 words, 24 × 11 = 264, split into 256 entropy and eight checksum bits.",
        "The checksum is derived from the entropy. It helps detect some errors but does not add independent secret randomness and does not catch every invalid transcription."
      ]
    },
    {
      "id": "format",
      "heading": "A similar-looking phrase can use another system",
      "sourceIds": [
        "x425-btc-electrum-seed",
        "x425-btc-bip39",
        "x425-btc-bip44"
      ],
      "paragraphs": [
        "Electrum documents a native seed-version system that signals derivation information. A BIP-39 phrase has its own rules and may still need the correct passphrase, paths and script conventions to locate the intended accounts.",
        "Do not add or remove words to convert between formats. Those changes do not extend the original wallet; they alter or invalidate its recovery input. Use a supported migration transaction when changing wallet arrangements."
      ]
    },
    {
      "id": "security",
      "heading": "Protect the complete recovery arrangement",
      "sourceIds": [
        "x425-btc-secure",
        "x425-btc-bip39"
      ],
      "paragraphs": [
        "An attacker who obtains the necessary full recovery secret does not need to guess whether it originally had 128 or 256 bits of entropy. Storage, device authenticity and informed signing remain material risks for both lengths.",
        "Use the format generated and supported by the chosen wallet, preserve any required passphrase and test recovery through its documented process. Neither phrase length makes a public address capable of recovering the missing words."
      ]
    }
  ],
  "faq": [
    {
      "question": "Can I turn a 12-word wallet into the same wallet with 24 words?",
      "answer": "Not by appending words. BIP-39 maps different valid mnemonic inputs through seed derivation; a longer newly generated phrase generally represents a different wallet. A transfer is needed to move funds between independent keys.",
      "sourceIds": [
        "x425-btc-bip39"
      ]
    },
    {
      "question": "Does a valid checksum mean I restored the intended wallet?",
      "answer": "No. It checks the mnemonic encoding. The wrong valid mnemonic, a different normalized passphrase or incompatible derivation settings can still produce a different wallet or an incomplete view.",
      "sourceIds": [
        "x425-btc-bip39",
        "x425-btc-bip44"
      ]
    }
  ],
  "claims": [
    {
      "id": "bitcoin-12-vs-24-word-seed-quick-answer",
      "articleSlug": "bitcoin-12-vs-24-word-seed",
      "statement": "In BIP-39, a correctly generated 12-word mnemonic encodes 128 entropy bits plus a 4-bit checksum; 24 words encode 256 entropy bits plus an 8-bit checksum. More words increase that generated entropy, but they do not fix exposed backups or a compromised signer. Word count also does not identify the wallet format: Electrum’s native mnemonic system is different from BIP-39.",
      "sourceIds": [
        "source-a7583e32275982ab",
        "source-7eae899f0b532217",
        "source-ccf126c494bfe748"
      ],
      "sourceLocators": [
        {
          "sourceId": "source-a7583e32275982ab",
          "locator": "Generating the mnemonic; From mnemonic to seed"
        },
        {
          "sourceId": "source-7eae899f0b532217",
          "locator": "Electrum Seed Version System; Description; Motivation; Security implications"
        },
        {
          "sourceId": "source-ccf126c494bfe748",
          "locator": "Be careful with online services; Backup your wallet; Encrypt your wallet; Offline wallet for savings; Hardware wallets; Keep your software up to date"
        }
      ],
      "scope": {
        "collection": "bitcoin",
        "dataAsOf": "2026-10-02",
        "blockHeight": null
      },
      "qualification": "Educational explanation. Product-specific behavior is scoped to the cited documentation, checked 2026-10-02.",
      "evidenceStatus": "documented",
      "verification": {
        "status": "verified",
        "method": "independent automated source review",
        "checkedAt": "2026-10-02T19:29:20.637Z",
        "reviewer": "Independent automated verification — Codex /root/verify_ethereum_100, separate from the Bitcoin drafting agent",
        "notes": [
          "Checked BIP39 ENT/CS/MS table,2048-word encoding and NFKD processing, plus Electrum native seed version system.132/264encoded bits are separated from128/256entropy bits; word count alone is not a cross-wallet format guarantee."
        ]
      }
    },
    {
      "id": "bitcoin-12-vs-24-word-seed-fact-12-words",
      "articleSlug": "bitcoin-12-vs-24-word-seed",
      "statement": "12 words: 128 entropy bits + 4 checksum bits",
      "sourceIds": [
        "source-a7583e32275982ab"
      ],
      "sourceLocators": [
        {
          "sourceId": "source-a7583e32275982ab",
          "locator": "Generating the mnemonic; From mnemonic to seed"
        }
      ],
      "scope": {
        "collection": "bitcoin",
        "dataAsOf": "2026-10-02",
        "blockHeight": null
      },
      "qualification": "",
      "evidenceStatus": "documented",
      "verification": {
        "status": "verified",
        "method": "independent automated source review",
        "checkedAt": "2026-10-02T19:29:20.637Z",
        "reviewer": "Independent automated verification — Codex /root/verify_ethereum_100, separate from the Bitcoin drafting agent",
        "notes": [
          "Checked BIP39 ENT/CS/MS table,2048-word encoding and NFKD processing, plus Electrum native seed version system.132/264encoded bits are separated from128/256entropy bits; word count alone is not a cross-wallet format guarantee."
        ]
      }
    },
    {
      "id": "bitcoin-12-vs-24-word-seed-fact-24-words",
      "articleSlug": "bitcoin-12-vs-24-word-seed",
      "statement": "24 words: 256 entropy bits + 8 checksum bits",
      "sourceIds": [
        "source-a7583e32275982ab"
      ],
      "sourceLocators": [
        {
          "sourceId": "source-a7583e32275982ab",
          "locator": "Generating the mnemonic; From mnemonic to seed"
        }
      ],
      "scope": {
        "collection": "bitcoin",
        "dataAsOf": "2026-10-02",
        "blockHeight": null
      },
      "qualification": "",
      "evidenceStatus": "documented",
      "verification": {
        "status": "verified",
        "method": "independent automated source review",
        "checkedAt": "2026-10-02T19:29:20.637Z",
        "reviewer": "Independent automated verification — Codex /root/verify_ethereum_100, separate from the Bitcoin drafting agent",
        "notes": [
          "Checked BIP39 ENT/CS/MS table,2048-word encoding and NFKD processing, plus Electrum native seed version system.132/264encoded bits are separated from128/256entropy bits; word count alone is not a cross-wallet format guarantee."
        ]
      }
    },
    {
      "id": "bitcoin-12-vs-24-word-seed-fact-compatibility",
      "articleSlug": "bitcoin-12-vs-24-word-seed",
      "statement": "Compatibility: Check the mnemonic system, not only length",
      "sourceIds": [
        "source-7eae899f0b532217"
      ],
      "sourceLocators": [
        {
          "sourceId": "source-7eae899f0b532217",
          "locator": "Electrum Seed Version System; Description; Motivation; Security implications"
        }
      ],
      "scope": {
        "collection": "bitcoin",
        "dataAsOf": "2026-10-02",
        "blockHeight": null
      },
      "qualification": "",
      "evidenceStatus": "documented",
      "verification": {
        "status": "verified",
        "method": "independent automated source review",
        "checkedAt": "2026-10-02T19:29:20.637Z",
        "reviewer": "Independent automated verification — Codex /root/verify_ethereum_100, separate from the Bitcoin drafting agent",
        "notes": [
          "Checked BIP39 ENT/CS/MS table,2048-word encoding and NFKD processing, plus Electrum native seed version system.132/264encoded bits are separated from128/256entropy bits; word count alone is not a cross-wallet format guarantee."
        ]
      }
    }
  ],
  "sources": [
    {
      "id": "x425-btc-bip39",
      "label": "Mnemonic code for generating deterministic keys",
      "publisher": "Bitcoin Improvement Proposals",
      "url": "https://raw.githubusercontent.com/bitcoin/bips/927b6de9915c9262615a6399de51b200f81e5aa4/bip-0039.mediawiki",
      "locator": "Generating the mnemonic; From mnemonic to seed",
      "note": "Entropy and checksum table, intended computer-generated randomness and NFKD seed derivation.",
      "version": "Pinned BIPs revision",
      "checkedAt": "2026-10-02T18:53:54.120Z",
      "contentSha256": "afcbcbed36fe9eb734bd607398a8c124683ded2a75c3830e1b16c47b043a9134",
      "recordId": "source-a7583e32275982ab"
    },
    {
      "id": "x425-btc-electrum-seed",
      "label": "Seed Version System",
      "publisher": "Electrum",
      "url": "https://electrum.readthedocs.io/en/latest/seedphrase.html",
      "locator": "Electrum Seed Version System; Description; Motivation; Security implications",
      "note": "Electrum mnemonic format differs from BIP-39 and encodes a version indication.",
      "checkedAt": "2026-10-02T18:53:56.665Z",
      "contentSha256": "93d7422d74821ecabd6364a8c3912fea3d0521229bd16b9b3d512537545511e7",
      "recordId": "source-7eae899f0b532217",
      "version": null
    },
    {
      "id": "x425-btc-secure",
      "label": "Securing your wallet",
      "publisher": "Bitcoin.org",
      "url": "https://bitcoin.org/en/secure-your-wallet",
      "locator": "Be careful with online services; Backup your wallet; Encrypt your wallet; Offline wallet for savings; Hardware wallets; Keep your software up to date",
      "note": "Backup scope, online exposure, offline signing, custody and software update practices.",
      "checkedAt": "2026-10-02T18:53:53.659Z",
      "contentSha256": "b6017f869461de2150d6b3b328f2ff75aedcd888d7a66cc311acbc243d6ead49",
      "recordId": "source-ccf126c494bfe748",
      "version": null
    },
    {
      "id": "x425-btc-bip44",
      "label": "Multi-Account Hierarchy for Deterministic Wallets",
      "publisher": "Bitcoin Improvement Proposals",
      "url": "https://raw.githubusercontent.com/bitcoin/bips/927b6de9915c9262615a6399de51b200f81e5aa4/bip-0044.mediawiki",
      "locator": "Path levels; Account discovery; Address gap limit",
      "note": "Hardened account paths and external-chain discovery gap rule.",
      "version": "Pinned BIPs revision",
      "checkedAt": "2026-10-02T18:53:54.097Z",
      "contentSha256": "6a541c79f94077ac529941a8cbd373ce077a5d6e97b6dd8209b45ac10f737eaf",
      "recordId": "source-43d35242be710673"
    }
  ],
  "related": {
    "articles": [
      "private-keys-and-seed-phrases",
      "bitcoin-wallet-passphrases",
      "bitcoin-brainwallets",
      "bitcoin-wallet-gap-limit"
    ],
    "dossiers": [],
    "wallets": []
  },
  "revisionHistory": [
    {
      "date": "2026-10-02",
      "kind": "published",
      "summary": "First publication after primary-source research and separate automated verification."
    }
  ],
  "citation": "Degrees of Satoshi editorial project. “12 versus 24 seed words: entropy, checksums and compatibility.” Published 2026-10-02; updated 2026-10-02. https://degreesofsatoshi.com/encyclopedia/bitcoin-12-vs-24-word-seed/"
}
