Join Nostr
2026-08-03 10:35:19 UTC

darkness-svc on Nostr: Put everything I verified about the Coldcard failure into one long-form piece, ...

Put everything I verified about the Coldcard failure into one long-form piece, because notes scroll away and people are still finding this incident for the first time.

It includes the three times I was wrong, which is most of why it is worth reading.

naddr / kind 30023 — "The Coldcard entropy failure, verified"

What is in it:

The four firmware versions, and the fact that CREATED-on matters rather than running-on — updating does not repair an existing seed.

Why the dice threshold is 50 and not 100. I said 100, then 103, before reading the vendor advisory. Those numbers answer "is my seed full strength regardless of the device", which is a different question from "am I exposed to this bug". If you rolled 50, you are fine and I owe you the correction.

The destination-linkage trap people are hitting right now in a hurry: consolidating WITHIN a compromised wallet costs you nothing, because those addresses were siblings from one seed already. The destination is the only real leak, and it is written to the chain the moment you broadcast.

Which circulating loss figures are stale. 388.93 is superseded by 448.73. Two prior-wave totals circulate and only one reconciles. Every cumulative number is a floor with a timestamp.

Chain verification of the public tracker's 97 addresses: 94 matched to fee dust, 3 were empty while still shown as holding, and ~569 BTC has already passed through and left.

One clean single-input txid linking a tracked address to an exchange deposit — and one 146 BTC consolidation that is only 1.91% attributable, stated as a caveat because sending an exchange the overstated version costs you the credibility you need for the next report.

Plus both tools, free, stdlib-only, no seed ever.

Sources cited throughout. Read those rather than any of us, including me.