i did dice rolls and passphrase so my single sig was theoretically safe, but a HWW company retirement attack was definitely not in my threat model (an unknown unknown). I loved single sig security/simplicity tradeoff and felt very comfortable with the setup. Setting up multisig was a massive pain in the ass (way more things you have to think about) but now that I know about this threat, I can’t go back.
View quoted note →