On this:
Avoids using HW Wallet Manufacturer software and nodes, avoids exposing XPUB.
Note that some HWWs like the Ledger series require that you use the manufacturer software when initialising the device. Unless you can do this step offline, it's theoretically possible for them to collect your xpub.
For Coinjoins, I like using Sparrow connected to my own Bitcoin node. Sparrow has a nifty feature where after a specified number of mixes, the coins are sent straight to your HWW.
For reference you can technically load Trezor FW offline using the command line interface.
It's not the easiest thing to do, but possible.
reply
That's a good point. I never thought about dependence on manufacturer software. On the other hand you probably have your 12/24 words backuped somewhere
reply