Yep, these are all attack vectors that must be considered unfortunately. Seedsigner is good for this, as you can build a signing device with all parts from non nitcoin specific vendors, so no one need know you own one.
Discussion
Seedsigner as a wallet?
It's a hardware wallet that is diy.
Correct, it is a stateless signing device, so it doesn't hold keys when it's not on (this is a security choice by design) , meaning you have to give it your keys each time you want to use it (either type them in or use a qr code you can create via their software). Also great for generating seeds in a completely offline way.