pull down to refresh

I know with the whole Coldcard fiasco going on, and still going on, this might be a touchy subject.

BUT I don’t have an easy way to get my hands on another signer. My situation doesn’t call for one to sign but I would like to roll dice to generate more seed phrases to be used for different purposes.

To my understanding the bug was from a software update introduced a couple years ago that turned a true number generator into a “pseudo” random number generator. That was it, nothing else.

My question is if I bring in my own entropy and randomness to any Coldcard device (Mk4, Mk5, or Q), is the seed generated safe to use?

The device is completely offline and will
be run in a stateless environment. The only true purpose of the device would be to generate the last word and provide the valid checksum in in need for.

What are your thoughts?

25 sats \ 1 reply \ @OT 23h

If you do need to use a Coldcard update the firmware first.

You can then verify that the dice roll function is working by using iancoleman.io and enter the same dice rolls to see if they match. That should be enough for generating new seeds offline, but might be a good idea to look into some other options for sending and receiving. I think Coldcard is done meaning that no one will be working on maintaining it.

reply

Recently updated to the most recent update that they released to “patch” the bug.

I saw that website from a video on YouTube by Southern Bitcoiner and some others, I will definitely check that out before I put any real funds on the table.

It would be interesting to see what’s to come from Coldcard. I just need a device to play around with, for now…

I would love to build my own Seed Signer but I don’t feel comfortable ordering the parts from 3rd parties.

There are just so many variables at play.

reply
reply

Marked safe from Canadian Bitcoiners.

reply