Is SeedSigner the right choice for you?
Hear @SeedSigner‘s creator explain its trust model, trade-offs, and strengths.
This excerpt is from an interview Ziya and I did with Seed over a year ago.
ColdCard’s bug doesn’t have to be an inside job to be a colossal failure. It’s already bad enough on its own and I don’t find the claims accusing Odell of being in on it convincing.
The podcast clip that’s been circulating doesn’t incriminate Odell. He’s discussing a self-discovered vulnerability in firmware 4.0.0 (one release before the catastrophic 4.0.1), which only affected users who upgraded to that version. 4.0.1 was a patch of whatever vulnerability that existed in 4.0.0.
He’s talking about a different vulnerability that could have been exploited. Nothing in that clip suggests he knew 4.0.1 would introduce an entirely new bug.
Arguably, NVK didn’t know either. But his decision to move away from GPL-licensed code and adopt a source-available license just because he childishly hated competition is what ultimately set the stage for this catastrophe. It doesn’t make nvk any less responsible.
This little guy here, running on a general-purpose computer, had been outperforming ColdCard the entire time while NVK was busy buying domains to take cheap shots at SeedSigner.
I remember NVK shitting on Andreas Antonopoulos over the seed-generation method described in Mastering Bitcoin. I remember him saying that if Andreas had spent less time shitcoining and more time updating his book, those wallets that used this algorithm wouldn't have lost coins.
Someone should have told NVK that if he'd spent less time shitting on other wallets and childishly changing his license because he didn't like a competitor using his code, this colossal mess might never have happened.
Shitcoiners are better than toxic people.