Bitcoin Forum
July 01, 2024, 03:16:04 PM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1]
  Print  
Author Topic: Cold Wallets: I'm confused - Unconfuse me  (Read 119 times)
MikeSD (OP)
Newbie
*
Offline Offline

Activity: 15
Merit: 20


View Profile
June 07, 2024, 02:49:52 PM
 #1

I've been dabbling in crypto for 7 years. And by dabble I mean, "almost not at all". I have tried coinbase and still have an account and wallet.  But recently I got a Ledger Nano S.  It was unused and FREE, so I tried to use it.  The install went flawlessly, albeit I bought my 2nd house much quicker.  Grin

But I'm confused about usage and terms.

I have seen
Seeds,
Private Keys,
Passwords,
Pins,
Master keys, etc

I don't know what each does, or if they are all applicable to the Nano S.

I did try sending, receiving, buying and loading and that all went fine.
But, when I installed this, it sent me to a page that said to buy a subscription, for $9.99/mo.  Subscription for what?  It used the term "recovery" so I assume it's something to do with.. "recovery".

But then I realized that the primary purpost for the cold wallet, was to keep my keys, on my device, and not on the internet.  but this "recovery" subscription seemed to be to backup my keys on another server, and not my wallet.

Q1: Doesn't that kind of negate the value of the wallet, if keys are stored OFF the wallet?

Q2: Is this $9.99/mo subscription mandatory? It didn't leave me much option?
Q3: Can I use the nano 3, just like it's advertized, without the subscription? I can write down my own keys and manage them myself.
Q4: Is there anything I lose, that's important, if I don't buy the subscription?
Q5: Are there any important advantages, if I keep the subscription? $120/year sounds expensive to me.

So far I know I have a
* seed (writen down and saved), used for recovery and creation of backup wallets
* password (duh! to log onto my wallet
* password (for the subscription service)
* private keys ? (have no idea what that is. Is that the seed)
* other things I don't know, what I don't know

Q6: I have a coinbase wallet.  Is that a hot wallet, or some other kind of wallet.
Q7: I also have Electrum wallet.  (was just experimenting in 2017, and didn't know I had a seed to remember, and lost my password. Just the other day, I was looking at some notebooks, an found the password. It worked, so I recovered that account. Unfortunately, it only had $29 in it. Cheesy)
Q8: I have been thinking about the nano X. I want to use my samsung phone and not a PC or laptop.  Can the nano S, work on an android phone. Or does that app only work on a PC.
Q9: Is the nano X better than the S? I know it uses bluetooth?
Q10: Finally, what is the most secure cold wallet?  Are they beter than the hot wallets, like codebase wallet?

Thanks in advance
LoyceMobile
Hero Member
*****
Offline Offline

Activity: 1664
Merit: 687


LoyceV on the road. Or couch.


View Profile WWW
June 07, 2024, 03:02:57 PM
 #2

Who have it for free? That's usually a big red flag.

Ledger recovery wants you to broadcast your seed words to them. A lot has been written in another topic, long story short: don't do it. Ledger is not cold storage.

LoyceV on the road Advertise here for LN Don't deal with this account (exception)
Advertise here for LN Tip my kids Exchange LN (20 coins). 1% fee. No KYC <€50/month
My useful topics: Meritt & Trust & Moreee Art Advertise here for LN Foru[url=https://bitcointalk.org/m
OmegaStarScream
Staff
Legendary
*
Offline Offline

Activity: 3528
Merit: 6183



View Profile
June 07, 2024, 03:04:32 PM
 #3

1. Ledger claim that they have no access to the seedphrase, unless you decide to share it with them. I haven't been following the latest news though, so I could be wrong.
2. It shouldn't be necessary, no. and I definitely wouldn't recommend doing it.
3. As I have said above, it shouldn't be necessary, so nothing important. Just make sure you store your seedphrase safely offline.
4. Definitely not. You're not missing on anything.
5. The private keys are derived from the seedphrase. Each one of your receiving addresses is linked to a private key. The private key is what let you spend the funds from that specific address. If you have the seed, you shouldn't worry about all of that.
6. A coinbase wallet is a hot wallet yes.
7. Electrum is also considered as a hot wallet, unless used otherwise (but the main difference compared to coinbase here is that its open source).
8. You should be able to use it. The ledger live app is available for both android and PC.
9.  It's mainly the bluetooth. Here's is a detailed comparison between the two devices: https://shop.ledger.com/pages/hardware-wallets-comparison
10. Go to the hardware wallet board, there are plenty of similar topics: https://bitcointalk.org/index.php?board=261.0

█▀▀▀











█▄▄▄
▀▀▀▀▀▀▀▀▀▀▀
e
▄▄▄▄▄▄▄▄▄▄▄
█████████████
████████████▄███
██▐███████▄█████▀
█████████▄████▀
███▐████▄███▀
████▐██████▀
█████▀█████
███████████▄
████████████▄
██▄█████▀█████▄
▄█████████▀█████▀
███████████▀██▀
████▀█████████
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
c.h.
▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄
▀▀▀█











▄▄▄█
▄██████▄▄▄
█████████████▄▄
███████████████
███████████████
███████████████
███████████████
███░░█████████
███▌▐█████████
█████████████
███████████▀
██████████▀
████████▀
▀██▀▀
Charles-Tim
Legendary
*
Offline Offline

Activity: 1596
Merit: 4992


Leading Crypto Sports Betting & Casino Platform


View Profile
June 07, 2024, 03:09:35 PM
 #4

So Ledgers nano seed phrase backup with those companies is now subscription service. Ledger Nano wallets are the worst hardware wallet that someone can go for.

Q1: Doesn't that kind of negate the value of the wallet, if keys are stored OFF the wallet?
It makes the wallet to be worthless to me. But your seed phrase backup should be stored someone offline in two or three different locations.

Q2: Is this $9.99/mo subscription mandatory? It didn't leave me much option?
I know the third party backup is not mandatory. But why would they include such thing.

Q3: Can I use the nano 3, just like it's advertized, without the subscription? I can write down my own keys and manage them myself.
The third party backup is not mandatory.

Q4: Is there anything I lose, that's important, if I don't buy the subscription?
You lose nothing but you gain something because nobody will know your seed phrase but only you if you protect it very well. You can even add passphrase to make it more secure offline.

Q5: Are there any important advantages, if I keep the subscription? $120/year sounds expensive to me.
They are just looking for more money. It has no importance to me.

Q6: I have a coinbase wallet.  Is that a hot wallet, or some other kind of wallet.
Coinbase.com is a custodial wallet but they have a wallet which is noncustodial. If the wallet has seed phrase, it is noncustodial. But it is close source and not recommended.

Q7: I also have Electrum wallet.  (was just experimenting in 2017, and didn't know I had a seed to remember, and lost my password. Just the other day, I was looking at some notebooks, an found the password. It worked, so I recovered that account. Unfortunately, it only had $29 in it. Cheesy
This is not a question. But it is worth knowing that only the seed phrase is enough to access your wallet. If you forget the password, create a new wallet and import the seed phrase and set a new password.

Q9: Is the nano X better than the S? I know it uses bluetooth?
Nano X is supporting more coins.

Q10: Finally, what is the most secure cold wallet?  Are they beter than the hot wallets, like codebase wallet?
Those airgapped and open source ones like Foundation Passport.

..Stake.com..   ▄████████████████████████████████████▄
   ██ ▄▄▄▄▄▄▄▄▄▄            ▄▄▄▄▄▄▄▄▄▄ ██  ▄████▄
   ██ ▀▀▀▀▀▀▀▀▀▀ ██████████ ▀▀▀▀▀▀▀▀▀▀ ██  ██████
   ██ ██████████ ██      ██ ██████████ ██   ▀██▀
   ██ ██      ██ ██████  ██ ██      ██ ██    ██
   ██ ██████  ██ █████  ███ ██████  ██ ████▄ ██
   ██ █████  ███ ████  ████ █████  ███ ████████
   ██ ████  ████ ██████████ ████  ████ ████▀
   ██ ██████████ ▄▄▄▄▄▄▄▄▄▄ ██████████ ██
   ██            ▀▀▀▀▀▀▀▀▀▀            ██ 
   ▀█████████▀ ▄████████████▄ ▀█████████▀
  ▄▄▄▄▄▄▄▄▄▄▄▄███  ██  ██  ███▄▄▄▄▄▄▄▄▄▄▄▄
 ██████████████████████████████████████████
▄▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▄
█  ▄▀▄             █▀▀█▀▄▄
█  █▀█             █  ▐  ▐▌
█       ▄██▄       █  ▌  █
█     ▄██████▄     █  ▌ ▐▌
█    ██████████    █ ▐  █
█   ▐██████████▌   █ ▐ ▐▌
█    ▀▀██████▀▀    █ ▌ █
█     ▄▄▄██▄▄▄     █ ▌▐▌
█                  █▐ █
█                  █▐▐▌
█                  █▐█
▀▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▀█
▄▄█████████▄▄
▄██▀▀▀▀█████▀▀▀▀██▄
▄█▀       ▐█▌       ▀█▄
██         ▐█▌         ██
████▄     ▄█████▄     ▄████
████████▄███████████▄████████
███▀    █████████████    ▀███
██       ███████████       ██
▀█▄       █████████       ▄█▀
▀█▄    ▄██▀▀▀▀▀▀▀██▄  ▄▄▄█▀
▀███████         ███████▀
▀█████▄       ▄█████▀
▀▀▀███▄▄▄███▀▀▀
..PLAY NOW..
MikeSD (OP)
Newbie
*
Offline Offline

Activity: 15
Merit: 20


View Profile
June 07, 2024, 03:28:22 PM
Merited by LoyceV (4)
 #5

Who have it for free? That's usually a big red flag.

Ledger recovery wants you to broadcast your seed words to them. A lot has been written in another topic, long story short: don't do it. Ledger is not cold storage.
Not a red flag at all.  I got it from my brother, who recently passed away.  He was going to use it on his account.  Since he didn't use it, I will use it. 

It was NOT offered to me by any company. Just my brother's personal posession, that he never got around to using.

About the subscription.  That seemed to me to defeat the purpose of having the hardware device. But are you saying that the nano 3 (itself) is not a cold wallet? or only not so, if you get the recovery subscription?

I'm going to try and cancel that subscription, if it's not needed.
MikeSD (OP)
Newbie
*
Offline Offline

Activity: 15
Merit: 20


View Profile
June 07, 2024, 03:41:22 PM
Last edit: June 07, 2024, 04:54:44 PM by MikeSD
 #6

8. You should be able to use it. The ledger live app is available for both android and PC.

Everything you answered is pretty much what I got from my research. Just needed confirmation.

I did try downloading the android version of the wallet. However, when I tried to install it, it asked if it was a new install or if I had an existing account.  I said existing, then it asked for the login. I input the login email, and it came back with "no account under that email".

But it is the right email.  I went back to the PC version and verified I didn't use a different email.  Why wouldn't it be able to find my account? Or maybe I didn't do the install correctly.

Update: Duh. I better check the apps closer. I searched for Ledger App and the first that came up was crypto. wrong app. That's why it didn't know my email.  I then found the right app, and it let me log in and I was able to import my info to the android app. Now I'll just buy a short USB-C to USB-C and I can use the Nano 3.

Now I need to figure out how to delete my subscription.  Their website says to logon, then delete the account and I will be unscribed.

Update Again:Unregistering was easy.  So now, I'm on my own. All I had to do was follow the Recovery link, navigate to Manage my account[/b], and delete my login.  Then confirm through a link sent to my email.  According to the responsie it says "unregistered".  Easy Peasy.

Thanks
LoyceV
Legendary
*
Online Online

Activity: 3360
Merit: 16954


Thick-Skinned Gang Leader and Golden Feather 2021


View Profile WWW
June 07, 2024, 05:48:39 PM
 #7

About the subscription.  That seemed to me to defeat the purpose of having the hardware device.
Correct. Read Ledger Recovery - Send your (encrypted) recovery phrase to 3rd parties entities for all the reasons why this is a very, very bad idea.

Quote
But are you saying that the nano 3 (itself) is not a cold wallet?
A cold wallet is by definition a wallet that's never been connected to the internet. A hardware wallet that has the ability to broadcast it's seed phrase is a flaming hot wallet.

Quote
or only not so, if you get the recovery subscription?
That's the thing with Ledger: you don't know! With a cold wallet, you're certain your private keys have never touched an online device.

Update Again:Unregistering was easy.  So now, I'm on my own. All I had to do was follow the Recovery link, navigate to Manage my account[/b], and delete my login.  Then confirm through a link sent to my email.  According to the responsie it says "unregistered".  Easy Peasy.
Is it? Are you sure? Can you be sure? If you told me your seed phrase, and I told you I deleted it, would you trust me?
You should assume your seed phrase is now compromised. Don't fund it. You could reset the Ledger and create a new seed, but are you willing to trust Ledger now that you know the hardware wallet can "call home" to share your seed phrase? Note that Ledger literally lied about the security of their devices: for years, they said it's impossible for the seed phrase to leave the secure element. Then they created a "subscription service" that literally extracts the seed phrase from your device. Are you willing to risk your money with a company that lies about it's core business?



So Ledger set up it's "recovery" subscription in such a way that they trick new users into subscribing and sharing their seed phrase? Damn!

Lucius
Legendary
*
Offline Offline

Activity: 3290
Merit: 5741


Top Crypto Casino BC.GAME🎲


View Profile WWW
June 08, 2024, 09:39:12 AM
 #8

~snip~
So Ledger set up it's "recovery" subscription in such a way that they trick new users into subscribing and sharing their seed phrase? Damn!


How else could they get users to use something that is so pointless and risky that no one who understands the basics would ever think of using it even if it was completely free? At the end of the day, the "geniuses" who designed it together with the "Lord of the Rings" must somehow justify their innovation so that one day they can say that it is used by more than a million users of their devices.

█████████████████████████
████▐██▄█████████████████
████▐██████▄▄▄███████████
████▐████▄█████▄▄████████
████▐█████▀▀▀▀▀███▄██████
████▐███▀████████████████
████▐█████████▄█████▌████
████▐██▌█████▀██████▌████
████▐██████████▀████▌████
█████▀███▄█████▄███▀█████
███████▀█████████▀███████
██████████▀███▀██████████
█████████████████████████
.
BC.GAME
▄▄░░░▄▀▀▄████████
▄▄▄
██████████████
█████░░▄▄▄▄████████
▄▄▄▄▄▄▄▄▄██▄██████▄▄▄▄████
▄███▄█▄▄██████████▄████▄████
███████████████████████████▀███
▀████▄██▄██▄░░░░▄████████████
▀▀▀█████▄▄▄███████████▀██
███████████████████▀██
███████████████████▄██
▄███████████████████▄██
█████████████████████▀██
██████████████████████▄
.
..CASINO....SPORTS....RACING..
The Sceptical Chymist
Legendary
*
Offline Offline

Activity: 3388
Merit: 6887


Top Crypto Casino


View Profile
June 08, 2024, 01:48:55 PM
 #9

I'm going to try and cancel that subscription, if it's not needed.

The conclusion from the massive drama that happened when Ledger announced the Recover option was--and someone please correct me if I'm mistaken--that regardless of whether you have a subscription to the Recover, the secure element in the device allows the company to gain access to your private keys, and that was never ever disclosed before.  If you're dabbling with small amounts of crypto, you're probably going to be OK even if something catastrophic happened with Ledger, but I would not trust them at all.

The device itself might hold more sentimental value to you, as it was your brother's, and for that reason alone I'd hold onto it regardless of whether you're going to use it as a wallet.  I don't know you, but I'm sorry for your loss.

█████████████████████████
████▐██▄█████████████████
████▐██████▄▄▄███████████
████▐████▄█████▄▄████████
████▐█████▀▀▀▀▀███▄██████
████▐███▀████████████████
████▐█████████▄█████▌████
████▐██▌█████▀██████▌████
████▐██████████▀████▌████
█████▀███▄█████▄███▀█████
███████▀█████████▀███████
██████████▀███▀██████████
█████████████████████████
.
BC.GAME
▄▄░░░▄▀▀▄████████
▄▄▄
██████████████
█████░░▄▄▄▄████████
▄▄▄▄▄▄▄▄▄██▄██████▄▄▄▄████
▄███▄█▄▄██████████▄████▄████
███████████████████████████▀███
▀████▄██▄██▄░░░░▄████████████
▀▀▀█████▄▄▄███████████▀██
███████████████████▀██
███████████████████▄██
▄███████████████████▄██
█████████████████████▀██
██████████████████████▄
.
..CASINO....SPORTS....RACING..
SFR10
Legendary
*
Offline Offline

Activity: 3052
Merit: 3472


Crypto Swap Exchange


View Profile WWW
June 08, 2024, 07:39:40 PM
 #10

Can the nano S, work on an android phone.
Yes, it can, but the only way to get its full functionality is by using an OTG cable.

Q9: Is the nano X better than the S? I know it uses Bluetooth?
On paper, Nano X is better but in reality, it's one of the worst hardware wallets [especially if it was made in the past few years]: Ledger Nano X Circus (Battery, Recover and more)
Note: Make sure to read all of the comments on that thread!

█▀▀▀











█▄▄▄
▀▀▀▀▀▀▀▀▀▀▀
e
▄▄▄▄▄▄▄▄▄▄▄
█████████████
████████████▄███
██▐███████▄█████▀
█████████▄████▀
███▐████▄███▀
████▐██████▀
█████▀█████
███████████▄
████████████▄
██▄█████▀█████▄
▄█████████▀█████▀
███████████▀██▀
████▀█████████
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
c.h.
▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄
▀▀▀█











▄▄▄█
▄██████▄▄▄
█████████████▄▄
███████████████
███████████████
███████████████
███████████████
███░░█████████
███▌▐█████████
█████████████
███████████▀
██████████▀
████████▀
▀██▀▀
Cricktor
Legendary
*
Offline Offline

Activity: 812
Merit: 1187


Crypto Swap Exchange


View Profile
June 23, 2024, 07:12:35 PM
Merited by LoyceV (6)
 #11

Wait, you had a bad feeling that this paid recovery subscription is wrong and you still subscribed and paid for it? Why?

It sounds a bit as if Ledger follows some dark patterns to offer his customers victims their stupid recovery subscription in a way that their victims think it's mandatory. Why am I not surprised...

I would simply stay away from Ledger. Their firmware is closed source, they lied in the past about their claim that your seed can't ever leave the device. Well, their stupid recovery subscription does exactly that and you have to pay for it, monthly. How bonkers is that!?

I also believe you have a Ledger Nano S plus as to my knowledge the Nano S can't have the recovery subscription firmware. (I might be wrong though as I wouldn't touch any Ledger even if I got one for free and couldn't care less about their crap, except to warn people to stay away from it).

█▀▀▀











█▄▄▄
▀▀▀▀▀▀▀▀▀▀▀
e
▄▄▄▄▄▄▄▄▄▄▄
█████████████
████████████▄███
██▐███████▄█████▀
█████████▄████▀
███▐████▄███▀
████▐██████▀
█████▀█████
███████████▄
████████████▄
██▄█████▀█████▄
▄█████████▀█████▀
███████████▀██▀
████▀█████████
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
c.h.
▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄
▀▀▀█











▄▄▄█
▄██████▄▄▄
█████████████▄▄
███████████████
███████████████
███████████████
███████████████
███░░█████████
███▌▐█████████
█████████████
███████████▀
██████████▀
████████▀
▀██▀▀
Pages: [1]
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!