Edited By
Daniel Kim

A controversy has erupted in the crypto world as users question the security of hardware wallets, particularly focusing on ColdCard. Comments from various forums reveal a growing concern over the reliability of hardware wallet manufacturers regarding true random number generation (TRNG) after ColdCard's claims were scrutinized.
The ColdCard wallet manufacturer, Coinkite, asserted on their website that their device utilizes a TRNG to generate secure seed phrases. However, reports suggest that this feature was not implemented correctly, raising alarms about the device's entropy generation process. A user stated, "Yes, technically their device is capable of TRNG but it wasnβt being used."
Many users are voicing skepticism about the integrity of all hardware wallets. Key points from various discussions include:
Reliability of Claims: Users highlight that without open-source access, how can anyone trust a wallet provider? One commentator pointed out, "Ledger has strictly closed source entropy generation, so there is no way for anyone to check the code to see if their entropy is working right."
Lessons on Company Transparency: Concerns have surfaced about execution and code review integrity among manufacturers. A user emphasized, "The lesson is company execution and code review is more important than specs."
Manual Entropy Creation: Alternatives to relying solely on wallet manufacturers are also being considered. As one commenter put it, "If you want to be secure, create your own entropy manually rolling the dices."
The backlash continues as skepticism about the reliability of wallet security mounts. A user remarked, "Trusting a closed-source chip is always a leap of faith." This indicates a significant chill among the crypto community regarding how secure their assets might really be.
"Coins were still in ColdCard wallets a week ago, did that mean they were safe?"
As users question their wallet choices, some express relief that other wallet manufactures are seemingly avoiding similar issues so far.
β οΈ ColdCard's TRNG claims are under review, stirring significant skepticism among users.
π Users stress that transparent company practices are essential for trust.
π² There is a call for manual entropy creation as a safe alternative.
As the conversation evolves, one can't help but wonder: Will companies tighten their security measures, or will doubts linger? The cold reality is that users are reevaluating their confidence in hardware wallet manufacturers in light of these revelations.
There's a strong chance that ColdCard and other hardware wallet manufacturers will respond to this scrutiny by enhancing transparency in their operations. Analysts estimate around a 60% likelihood that we will see manufacturers release open-source audits of their entropy generation processes within the next year. This could restore some trust among users, providing clearer validations of their claims. However, if companies fail to address these issues, skepticism may lead to diminished market confidence, driving people toward wallets that prioritize open-source development and user empowerment.
Consider the 1970s, when the first wave of home computers faced skepticism over data security. Much like todayβs concerns around ColdCard, early users doubted whether these new technologies could keep sensitive information safe. Yet, resilience paved the way for significant advancements. In this case, consumers pushed companies to innovate in security standards, ultimately laying the groundwork for the secure technology we rely on today. Similarly, crypto wallet users might just become the catalysts for a new era of secure, transparent wallet solutions.