<oembed><type>rich</type><version>1.0</version><author_name>Cyph3rp9nk (npub1ln…arrnt)</author_name><author_url>https://nostr.ae/npub1lnms53w04qt742qnhxag5d6awy7nz6055flnmjkr6jg39hm86dlq7arrnt</author_url><provider_name>njump</provider_name><provider_url>https://nostr.ae</provider_url><html>Applying this principle, right from the start you should only use wallets that have no secure hardware component and are fully open-source—and the only ones that meet these criteria are:&#xA;&#xA;- Trezor 1 and Trezor T&#xA;- Jade&#xA;- SeedSigner&#xA;&#xA;Add a passphrase with more than 128 bits of entropy, and as of today, these are the most secure options.&#xA;&#xA;Failing that, you can use them for multi-signature transactions.&#xA;&#xA;Anyone who doesn’t understand why I’m saying this knows nothing about cryptography and is just an uninformed idiot. &#xA;&#xA;And an old, offline PC running Linux encrypted via LUKS is also perfectly valid as a signing device, as long as you use a passphrase and avoid using TPM to encrypt the disk.&#xA;nostr:nevent1qqs25668ywg6prc7c4n39e5ndt83g7geneqyvsxva8pmc0mhcud4l2qzyr70wzj9e75p064gzwum4z3ht4cn6vtf7j3870w2c02fzyklvlfhuqcyqqqqqqgpr3mhxue69uhkummnw3ezucnfw33k76twv4ezuum0vd5kzmqvq8t2t</html></oembed>