pull down to refresh
Yes. You get a new operational reality when you use multisig. You take away one worry and replace it with a bunch of others. Some easier to harden, but not all.
I'd suggest that the conditions under which to use multisig and under which not to are very important and if I'm honest, it's really hard to define the point in which it flips from "don't" to "do". Technical confidence is also pretty tough to self-assess in the first place (especially whether it is overconfidence or not.)
I am willing to admit that I don't have the same amount of technical knowledge as many, but I really do sleep good at night because I have keys stored with people I trust in other geographies and jurisdictions. I have the luxury of being able to trust these people to hold a key. But if it's something like 3 of 5, I don't have to trust them so very much (mostly just not to lose the key or spy on my descriptor).
I agree that multisig is not for every circumstance, but j do feel comfortable telling people I know that if they are going to have more than 1btc, they need more than 1 key.
That sounds better than someone trying to manage 3 keys themselves across disparate devices and having to back up each, esp where I assume you'd have descriptors with each of your people as well
This is one direction my brain wanders into solving this issue, there's already a few paid services for this collaborative custody model and it replicates how enterprises deal with similar challenges. I even remember reading a Bitmex post from a hundred years ago about their withdrawal system needing multiple executives to approve.
Collaborative Cold Storage.
https://m.stacker.news/150385
if it's something like 3 of 5, I don't have to trust them so very much
This opens the design space quite a bit too. Imagine we humble stackers holding keys for one another.
There's other issues to mitigate, but it's worth exploring deeper how to standardize this.
Dice Rolls:
To clarify:
Most common question i'm seeing is people want to know if they're OK if they used dice rolls with the Coldcard. Yes, dice rolls side-stepped the issue. Don't panik.
Not sure this is good advice yet for most. It moves the balance away from theft, but moves it toward loss, because storage is an unsolved problem for most. Paper and volatile disk storage are weak links, plates are high friction.
People need to understand the trade-offs of multisig before listening to people that are just bleating it out. Those same people often bleated Coldcard too.