Avatar
Haths Hayward
25d79e7a6208be603bf5df286813d3906a782e23e20dde1e327e3e4e95ce633d
#Bitcoin | Puravida | šŸ¤™šŸ¼

Ragnarok on Netflix tremendous! I cannot believe I slept on this.

Stuck between obsessively learning more about #Bitcoin and wanting to just stack and chill.

In related news:

There is no good reason to own as many hardware wallets as I do.

Whatever you are going through, it too will pass. Such is the way of things.

Part of my #Bitcoin security architecture is to have solid fiat finances.

The number one risk to your stack is you. Whether it’s getting too smart with your security, or too dumb with your fiat finances.

Like it or not, you need to play on the fiat system for the foreseeable future.

Should be a solid Midwestern Saturday. About to go to the archery range, then breakfast, and then it’s off to the firing range to give the pistols a workout. šŸ¤™šŸ¼

I keep going back to simple.

Like just 2 copies of a seed one at home and one in a safe deposit box.

Passphrase that’s easy to remember, but also backed up in a password manager.

Like that’s it.

Oh, want a hot wallet? Just use Wallet of Satoshi.

Like seriously. That would probably be more than enough for 99% of Individuals in reality.

Seed storage / security is a total mind fuck.

LOOKING FOR FEEDBACK:

Please punch holes in this #bitcoin custody architecture:

1. Make a fresh, proper 24 word seed phrase. Use dice. (ColdCard MK4)

2. Seed XOR (https://seedxor.com) into 2 parts. (Done on ColdCard)

3. Backup XOR {Seed 1} - 2 Copies

4. Backup XOR {Seed 2} - 3 Copies

5. Distribution Example:

1. Home - {Seed 1}

2. Business Safe (or other personal safe at different location) - {Seed 1}

3. Safe Deposit Box (Bank A) - {Seed 2}

4. Safe Deposit Box (Bank B) - {Seed 2}

5. Family Member Safe (>500 Miles Away) - {Seed 2}

6. Use the base seed phrase as a dummy wallet.

7. Cold storage on passphrase

8. BIP85 derived seeds for anything else.

1. Hot Wallets

2. Hardware Wallets

3. Multisigs

4. Etc

I’m envisioning the master seed as the nucleus of everything you do in Bitcoin.

Help me make this better. I’m trying to reduce complexity as much as possible while hardening the security of the master seed from which everything will be derived.

🤯

nostr:note1g278xg92zrqm2rn20s8lf7gx4g4ycc4dtlydesnm25rc5606kdfq97hje4

Captain Planet was a 5-of-5 multisig

šŸŽÆ

nostr:note12e3gxa4fpcs9ek36j964x8a5xahn4eenkt4p23xz4af6muakhnds0uukrh

You should avoid buying more #Bitcoin than you are willing to protect.

Setting up a robust multi-sig wallet is not a task that you should seek to accomplish quickly.

Take. Your. Time.

Better security and redundancy are only the tip of the ice berg.

#Bitcoin

Lyn’s just out here, doin' the lord's work.

šŸ™šŸ¼šŸ«”

nostr:note1x2pgscef8crsv3m7274jaka55uh2t6l0ks220yx8ax7crllp8s7sgwkwck

I genuinely appreciate the insight. I am thinking through a new multi-sig setup. So I’ve been spending a lot of time (and money) testing hardware, backup methods, etc….For whatever reason I couldn’t see the value, but your post really clicked with me. This now feels somewhat obvious, but could a person just make as many seeds as they want, backup the data be it with words or a SeedQR, and use just a single signing device (talking just straight hardware like a single SeedSigner) for all signatures?

Replying to Avatar SeedSigner

Going to pause my technical masturbation and point out a few things. First, OCR is a ubiquitous thing now, everyone’s phones & the cloud do it as easily as they will scan a QR code, so it makes little difference whether your private key is encoded as words or a QR code if there is a malicious camera spying on you.

Next, you glossed over the fact that with a hardware wallet, you have to store two copies of your key — one electronic copy on the device and then an analog copy for if/when the digital storage device fails. Is your seed protected by a passphrase? Most likely not b/c entering a passphrase w/ a HWW can be cumbersome, and besides, the wallet is keeping the seed safe, right? So where do you keep that second, backup copy? It doesn’t make any sense to store a seed right next to the hardware wallet that is ā€œprotectingā€ it. So now you need two locations to store private key material…

One advantage of a stateless device is that if someone finds / steals your signer, they get nothing. But another advantage is that the analogue copy of a given key can be the only copy of that key you have to worry about storing / maintaining. For a multisig setup, this means you can just worry about storing one copy of each key without figuring out where to put all of the backups as well.

SeedSigner (and the stateless, airgapped signing model) was conceived with long-term storage of generational wealth in mind. This means geographically distributed multisig, and it also means a little less convenience when signing. For medium-sized bitcoin wallets, a HWW can make a TON of sense b/c you have the convenience of a nearby key that is protected by reasonable access-control mechanisms. But for the bitcoin I’m going to be passing to my children, I want accessing the funds to involve a little more friction, because that inconvenience is going to make it exponentially harder for an adversary.

SeedSigner’s model not right for everyone and it may not be right for every bitcoin storage use case, but it does force you to think through these kinds of issues for your bitcoin stack that really matters, the long term one. Anyhow, going to get back to beating off now…

lol, I certainly didn't mean any offense. Honestly, this is exactly the response I was looking for to help me better understand when and where this would be used.

Thank you!

It’s that time of the year again where I review my #Bitcoin security, and take the time to look at anything new that I may want to add.

This year I’ve been exploring stateless hardware wallets and SeedQR…I might be missing the point, but it feels like technical masturbation to me.

So instead of pulling out a hardware device that stores the seed on a secure element, I need to get my actual seed phrase out. Which means taking it out of a tamper bag, closing the blinds, covering any cameras, and loading it onto a device.

I get being paranoid, but if you are, wouldn’t you be a touch worried that someone put a hidden camera somewhere, and the moment you take out your seed QR, it gets scanned and swept?

Been spending a lot of time studying various #Bitcoin entrepreneurs, and the companies they are building. Overlaying my opinions of these people & projects through the last 3-4 years and its wild how my opinions have changed.

Not long ago, I viewed people like nostr:npub1sg6plzptd64u62a878hep2kev88swjh3tw00gjsfl8f237lmu63q0uf63m and nostr:npub1cn4t4cd78nm900qc2hhqte5aa8c9njm6qkfzw95tszufwcwtcnsq7g3vle as the ones who were building the best of the best businesses in #Bitcoin...To be fair, I still to a large degree feel this way.

The bothersome part is that people like nostr:npub139nl9yxvwayl60fr97m3zrq9md6x5v0uup344mkyuyg6mzlusyxs4zkwf4 eluded my interest. Quietly building. No flash. Just principled execution of a plan. I knew of nostr:npub1xkere5pd94672h8w8r77uf4ustcazhfujkqgqzcykrdzakm4zl4qeud0en but paid it no mind.

Now that the dust has settled, and some of the biggest players/fraudsters have been purged from the system. One of the only companies that has gone through this bear market without controversy, close calls, or lost funds is Alex's. He walks the walk and it shows. Bigtime.

This bear market has exposed a lot of bad practices such as using custodians like Prime Trust. Even some of the most trusted brands in the space nearly got caught. Strike and Swan just to name a couple.

It also elevated the #Bitcoin businesses that are taking a slower and more network native approach, such as nostr:npub1xkere5pd94672h8w8r77uf4ustcazhfujkqgqzcykrdzakm4zl4qeud0en.

Huh, anywhere that I can find more info? Curious if it was actually nefarious or if they were just trying to test out some spam filtering.

No clue, but there seems to be a bit of salt towards them that I have not seen before.

I feel as though I missed some sort of drama related to nostr:npub12vkcxr0luzwp8e673v29eqjhrr7p9vqq8asav85swaepclllj09sylpugg and I am not 100% clear on what that was. Something to do with shadowbans or content filtering?

Genuinely curious if anyone is able to fill me in.

What are they walking back?