Best practice would be to leave the device alone and focus on securing your backup. That is where all of your attention should be.
I know you paid good dollar for the coldcard, but that device IS the expendable part of your setup.
Set it to kill itself after a few pin fails, set up a brickme pin in case someone tries to coerce you into unlocking it for them. Then leave it alone.
If it breaks, you lost your ability to sign a transaction immediately, you'll have to buy a new one and wait for delivery etc. But that is okay.
Focus on the backup(s). Too many copies = easy to steal, too little copies = easy to lose, seedxor = can help find a compromise between the two.
The best security is always unique to you and your circumstances. Focus on the backups.
That makes sense, my mind has been spinning over this for a while.
Thread collapsed