# Install the desktop application

import StepVideo from '@/components/StepVideo'

# Install

The KeepKey desktop application is distributed as a signed installer for macOS, Windows, and Linux. Download it from:

[**keepkey.com/desktop**](https://keepkey.com/desktop)

Release notes and checksums for each version are on [GitHub](https://github.com/keepkey/keepkey-vault/releases/latest).

<StepVideo id="01-install" />

## Platform downloads

| Platform | File | Notes |
|----------|------|-------|
| **macOS (Apple Silicon)** | `KeepKey-Vault-*-arm64.dmg` | M1/M2/M3/M4 Macs |
| **macOS (Intel)** | `KeepKey-Vault-*-x64.dmg` | Intel Macs |
| **Windows** | `KeepKey-Vault-*-win-x64-setup.exe` | Windows 10 and later |
| **Linux** | `KeepKey-Vault-*.AppImage` | Most modern distributions |

## System requirements

- **Windows:** Windows 10 or later, 64-bit.
- **macOS:** macOS 13 (Ventura) or later. Use the `arm64` download on Apple Silicon (M-series) Macs and the `x64` download on Intel Macs.
- **Linux:** 64-bit (x86_64) with glibc 2.35 or newer, for example Ubuntu 22.04, Debian 12 or Linux Mint 21. Check yours with `ldd --version`.

The installers and the app may still show the older name "KeepKey Vault". It's the same app. Coming back after years away? See [Coming back to an old KeepKey](/docs/desktop/coming-back).

## First launch

After installing, launch the application. On first run, you'll see the splash screen while the app starts and checks for a connected device.

<img src="/img/vault/vault-splash-screen.png" alt="Splash screen on first launch" style={{ maxWidth: '540px', borderRadius: '8px', margin: '16px 0' }} />

## Plug in your KeepKey

Connect your KeepKey hardware device using the USB cable that came with it. The device powers on automatically. If the device has already been set up with a PIN, the desktop application will prompt you to enter it. Otherwise, it will walk you through the [setup wizard](/docs/desktop/setup).

## Linux notes

On Linux, USB access to HID devices requires udev rules and `plugdev` group membership. If the desktop application can't detect your KeepKey, the quick fix is:

```bash
sudo curl -fsSL https://raw.githubusercontent.com/keepkey/udev-rules/master/51-usb-keepkey.rules \
  -o /etc/udev/rules.d/51-usb-keepkey.rules
sudo udevadm control --reload-rules
sudo udevadm trigger
sudo usermod -a -G plugdev $USER
```

Then log out, log back in, unplug the device, and plug it back in.

For the full explanation — what the rules mean, distribution-specific notes, and troubleshooting — see **[Linux Tips](/docs/desktop/linux-tips)**.

## macOS notes

On macOS, the first time you launch, the system will verify the signature. This can take a few seconds. Releases are signed and notarized by Apple, so macOS should open the app normally. If macOS warns you, don't override it — make sure you downloaded the installer from [keepkey.com/desktop](https://keepkey.com/desktop).

## Windows notes

KeepKey releases for Windows are Authenticode-signed. If Windows warns you about the installer, make sure you downloaded it from [keepkey.com/desktop](https://keepkey.com/desktop).

## Next

- **[Set Up Your KeepKey](/docs/desktop/setup)** — set up a new device or recover an existing one
- **[Linux Tips](/docs/desktop/linux-tips)** — full udev / permissions guide for Linux users
