A) no other wallet has been affected, which means the coldcard hardware is likely being used for the random number generator. B) a passphrase ie 13th word will prevent any hack. Even if the coldcard generates a dup key, it's not the same wallet as 12+passphrase. The passphrase is unguessable, as long as you use a standard password preferably with special characters and DO NOT use a word from the bip-39 list, obviously. Store it like you would your key It's just that, going forward, the standard practice if you're not multisig will have to be a 12 or 24 word key + a passphrase. I agree, for most multisig will actually get them wrecked. You think single sig self-custody is complex...multisig is orders of magnitude more complex than that.
ยท 17 Views