Yesterday, a serious flaw was disclosed in Coldcard’s seed-generation process. Funds linked to affected seeds are already being stolen.
We know Passport owners will have one immediate question: is my seed affected?
If your seed was generated on Passport Prime or Passport Core, the answer is no. Both devices use entirely different seed-generation code, and neither has ever contained this bug.
If you own a Coldcard, please read Coinkite's advisory immediately. It is time-sensitive. Please read the section on scams at the end before you take any action. Losses that follow an incident like this often come from the scams around it rather than the original problem.
What happened
Every Bitcoin wallet starts with a seed, and its security depends completely on that seed being random. If the randomness behind it is weak, everything built on top of it is weak too.
In March 2021, Coldcard changed the code behind its seed generation. A check that was meant to guarantee the device's hardware randomness was being utilized did not work as intended, and the firmware was instead built to use ordinary software randomness, calculated from predictable values like part of the chip's fixed identifier and timing registers. The hardware randomness was still there on the chip. That code path simply stopped using it.
The result is that the range of seeds a Coldcard could produce was drastically narrower than it should have been. How much narrower depends on the model and firmware, but all Coinkite devices are at risk.
The two accounts worth reading:
- Coinkite's advisory, which is the manufacturer's own and is being updated as they learn more -
blog.coinkite.com/coldcard-m…
- Block's technical analysis, which is the most thorough public write-up so far. -
engineering.block.xyz/blog/p…
Coinkite's advisory currently covers Mk3 from firmware 4.0.1, Mk4 and Mk5 before 5.6.0, and Q1 before 1.5.0Q. Block additionally identifies affected Mk2 firmware.
Check the advisory directly rather than relying on this summary, since the scope has already widened once.
Two things are worth understanding if you own a Coldcard:
1) What matters is the firmware that was running when the seed was created, not when you bought the device, and not which wallet holds it today.
2) Updating your firmware does not fix an existing seed. Recovering from this means generating a new seed and moving your funds to it.
Coinkite also has guidance on where dice rolls or a strong passphrase change the picture. Read it there rather than taking a rule of thumb from us.
Why Passport-generated seeds are not affected
Both Passport Core and Passport Prime generate seeds by combining multiple independent hardware sources, including our avalanche noise circuit, a physical component on the board built specifically to produce randomness. The published seed generation code on both devices uses those hardware sources. It does not fall back to a serial number, a device identifier, a timer or a clock.
CHECKING RATHER THAN TRUSTING
You do not have to take the above on our word, and we would rather you did not. Our firmware is open source, so you can read the code that creates your seed yourself. Both devices also have a documented reproducible build process, so you can build a release from source and confirm it matches the binary we published.
Independent security audits of both Passport Core and Passport Prime are published in full, along with our responses to them,
foundation.xyz/security.
PLEASE BE CAREFUL OF SCAMMERS
This is the part we would most like you to take away. Scammers are always circling, but when something high profile happens, they go into overdrive, because they know a lot of people are suddenly worried, confused and in a hurry. Assume anyone who contacts you out of the blue about your wallet is a scammer until proven otherwise.
To be completely clear about how we operate: Foundation will never ask for your seed words, recovery phrase, private keys, passphrase or PIN. Not by email, not on the forum, not in a support ticket, not on a call. There is no situation in which we need them.
We will never ask you to type your recovery phrase into a website, a form, an app or a support tool. We will never contact you unexpectedly about your wallet, and we will never ask you to move your funds.
We will never ask you to share your screen or install remote access software. If someone is pressuring you to act quickly, telling you your funds are at risk and they can help, offering a "recovery service", or asking you to verify your seed somewhere, stop and do nothing. That is the scam.
Be especially wary of direct messages, of people claiming to be Foundation or Coinkite staff, and of search results and sponsored links for wallet software, and only download software from the official source.
QUESTIONS
If you have questions about how your Passport creates and protects your seed, reach us through our official support channels or our community forum.
Forum:
community.foundation.xyz
Email: hello@foundation.xyz