We're early enough with Bitcoin that almost everyone will "roll their own" solution at some point. Even the tradeoffs between single sig with shamir vs multisig have no clear winner so it's still very easy to make mistakes.
Discussion
For most single sig plus passphrase will do, and they can use SeedXOR for backup
singlesig + pw is the ideal for cold storage due to simplicity. I now have a nunchuk + tapsigner setup for my day to day onchain wallet. I think this is the best setup.
That is the way. LN pocket change, BTC spending wallet, and deep cold. A few setups derisk mistakes.
It really comes down to the determination of the thief.
I would suggest it is silly to store a $3m asset in your home office, no matter what methods you use to secure it.
At some threshold you are putting more valuable things at risk (your family), than the Bitcoin.
Love the airgapping too
Keys should never touch a thing that touches the internet.
100 %