The main one is that you can't enter the passphrase on the device, and it doesn't have MicroSD card encryption for the PIN either.
quotingApplying this principle, right from the start you should only use wallets that have no secure hardware component and are fully open-source—and the only ones that meet these criteria are:
nevent1q…yvxf
- Trezor 1 and Trezor T
- Jade
- SeedSigner
Add a passphrase with more than 128 bits of entropy, and as of today, these are the most secure options.
Failing that, you can use them for multi-signature transactions.
Anyone who doesn’t understand why I’m saying this knows nothing about cryptography and is just an uninformed idiot.
And an old, offline PC running Linux encrypted via LUKS is also perfectly valid as a signing device, as long as you use a passphrase and avoid using TPM to encrypt the disk.
nevent1q…8t2t
