How do we know there will be no such vulnerabilities found in other wallets? I bet 90% of people use single sig. What’s a secure solution today? Only multisigs, or single sig (not Coldcard-generated) and passphrase could work?