ESP32 is not a secure platform. But it's cheap. So they made a trade off to at least call their servers for security. Not my preference but works for some ppl.
Discussion
It's better for us all if NVK spend his time protecting the private keys of the coldcard firmware signing. Bc if those get out, we are all holding ROOTED coldcards. And which might have already happened. 🤷