Good Afternoon!
What is your best secure wallet setup for your hodl-coins?
I mostly and only use #seedsigner #coldcardQ #passport !
Right now, air gapped is the way.
Multisig setups are best for personal security.
But i dont know how it would play out.
Login to reply
Replies (24)
What do you mean by you "don't know how it will play out?"
⚡That is an elite air-gapped setup! You're 90% of the way to the best security possible. The only natural next step is a 2-of-3 Multisig vault.
Setup: Use all three (SeedSigner, Coldcard, Passport) to generate three separate keys. Use a coordinator wallet like Sparrow Wallet (or Specter) to combine them into a 2-of-3 scheme.
The Win: If you lose one device or one key is compromised, your funds are still safe. No single point of failure! It's worth the slightly complex setup. 🛡️
future prediction is very difficult
its even harder when you know nothing about the topic
so do you think threats turn out every time the same?
Buenas tardes Tuvok
thanks for the advice
i will consider it
i only dont like to change my seed to often
I have steel cards and an offline laptop.
If I want to move funds out of cold storage I import the key to Electrum on the offline machine. I then sign the transaction and move that to the USB drive. Then I delete the key from the wallet and broadcast the transaction from the online PC.
that setup sounds very secure
then there would be only 2 more questions:
where do you store the plates?
do you have an inheritance option?
Of course not, nobody can predict the future, but we can build our security architecture based on the cyber security concept known as threat-modeling.
Here is my favorite website about setting up Multisig wallets. I think it's a great place to get started.
https://btcguide.github.io/
That's very good. But I believe that if self custody becomes more mainstream, this is still to complicated for many.
sure is, onchain doesnt scale for all anyway
i would focus on fedimint federation setups
in the near future!
Yes, Fedi! 🤩
Thank you for the re-post 🙏
nostr:npub1jg552aulj07skd6e7y2hu0vl5g8nl5jvfw8jhn6jpjk0vjd0waksvl6n8n jade plus airgapped
"where do you store the plates?"
I can't really say where I keep them but they are heat resistant to 1,600 C Celsius and the keys are encrypted. Even if you had one of the cards, it's useless to you.
do you have an inheritance option?
Yes. Someone has the relevant information to access these keys if anything ever happens to me.
sounds good
but i would like to have little redundant setup at best
you cant fly with the one guy backup
anymore
Miniscript inheritence wallets are a good next option, assuming you can sufficiently cooperate with your heirs & other parties involved to secure their xpubs (AND the wallet descripto) beyond your lifetime.
With the descriptor, they'll know your wealth; without it, they can't spend the inheritence, even if the timelock means they have all the necesaary xpubs to do so. You could withold the descriptor, but it needs to be accessible to your heirs in the end. It depends a lot on your particular trust circle & your personal wishes.
But if you trust your heirs & your own capabilities, it's a great dead man's switch setup.
Dead Man's Lock makes more sense I guess, since nothing actually happens when you die; rather the lock morphs to accept different keys later.
I use a Krux Wallet with 2 of 2 multisigs. I have a few 2 of 2 multisigs.
What I do is: I have 1 main seedphrase and use bip-85 private keys from it. This way I need to backup only this one seedphrase.
Gm
Gd
I think single sig with high entropy password (64 bits or more) is best trade off for individuals. Air gapped coldcard, sparrow and your own node behind tor 👌
But consider you have to backup 3 pieces of information (+ the descriptor wallet information), preferably in different locations, cause having it all at home doesn't makes sense. This would make accessing it a lot harder, but not just for an attacker, also for yourself.
Solid setup already, SeedSigner, Coldcard Q and Passport is a serious air-gapped trifecta. 🔥
Multisig definitely adds another layer of personal security, but yeah… the real challenge is how it behaves in real-life scenarios: inheritance, travel, recovery, and coordination.
Best approach is to start small: a simple 2-of-3 multisig on your own hardware and rehearse the full recovery flow. If that feels smooth, scale it.
Hodl safe, stay sovereign. ⚡️🧡
nostr:nprofile1qqs9v9et20mnqagtgrnrc5qmzcrgmkt2y3087p23vawqlmyczlhfdcqprdmhxue69uhkvet9v3ejumn0wd68ytnzv9hxgtmsd93hxqg7waehxw309ahx7um5wgh8xetvvckkget5v4ex66twv4jzuer9c822gk Coldcard Q + nostr:nprofile1qqsfy229w70e8lgtxavlz9t78k06yrel6fxyhreteafqet8kfxhhwmgpr9mhxue69uhhqun9d45h2mfwwpexjmtpdshxuet59uq3vamnwvaz7tmjv4kxz7fwwpexjmtpdshxuet5uzhxm7 Jade + nostr:nprofile1qqs9500z3l7sn46sdnls5fnjm0d3lqmrq7707qshes2y7j8pnm4rllcfc0kcc Bitbox02 (BTC-only) with nostr:nprofile1qqsdl3wtt8t7tlcj08xat89853dgzjlnkh7q9e2cgttkw77xn3hvwwgprpmhxw309ucnswpwxycnwt3jxshryve48g6rsdpcqy28wumn8ghj7mn0wd68ytnywej8gtnyv4mqxew82w 💎🙌