Users are paying the company to extract keys from their devices and send them over the internet to three third-parties somewhere.
At a moment like that, find yourself wondering: what could possibly go wrong? ... Everything!

Law enforcement could then put pressure on those companies to confiscate coins if they deem it "necessary."
All the regulator needs to do is mandate via yet another "wonderful" bill passed "for the greater good, against everything bad, and for the well-being of citizens" - that HW manufacturer collect, store, and transmit seed-phrases, much like the requirements for KYCs and personal data collection (data that routinely gets leaked or stolen). Sound absurd? In reality, bills just as idiotic as that actually get passed.
It's the 'paying for it' that's the highest form of perversion.
Well, smokers also pay for the thing that's "killing" them.

So, it's all good.

You pay to increase the chances of someone getting custody of your crypto, regardless if it's Ledger, law enforcement, the involved third parties or hackers/scammers.
To get clients to agree to this, the key is to present it in an appealing way.
By putting a price tag on the service, unsuspecting users may think it's some premium feature that has to be great. Why else would you need to pay for it.

I imagine that’s precisely the "effect" ledger was counting on. In reality, in this case, ledger ought to be paying the users.

Ledger owners would actually be better off staking their crypto-assets; you lose control over the assets there too, but at least you get paid some small amount of interest.
Either you pay or you get paid, but the outcome is the same: you lose control.
Ledger Recover is seen as a ticking time bomb... Even though it's only activated with the user's conscious consent, who guarantees they aren't sending encrypted keys on the servers? We know the code is closed source, so neither the company can guarantee anything beyond words and marketing arguments, nor do the users themselves have any assurance that the firmware actually behaves as stated...
And yet, someone is using Ledger Recovery (on a paid basis), right? It would be interesting to know the number of users in order to gauge the scale (of the potential threat).
If Ledger truly wants to gain credibility from Bitcoiners OG users, they should make the firmware open source.
Which hackers and malicious actors will inevitably study - using AI. They will find a vulnerability, and the Coldcard saga will repeat itself.
It seems they like to follow the motto: make mistakes, keep making mistakes, and they can't see an opportunity to make a mistake without diving headfirst into it............
As long as it makes them money, it isn't a mistake. Besides, why should we care about other's mistakes? At least, not as long as it doesn't affect us.
Every one of their customers makes a mistake by blindly trusting the Ledger Recovery feature.
Therefore, the solution is this: don't use Ledger Recovery, don't own a ledger's hardware wallets, and stay away from that company.