Thanks @wtsimis and @BigStrawbs70 for your responses. I really appreciate the time and thought you both put in to your responses.
I haven't looked into Coinkite but will definitely check it out.
And your reasoning does seem hard to fault Bigstrawbs. I think it's inevitable ill keep some VBTC, but still deciding how much.
Thanks again.
Hi all,
I've been looking to update how I custody my bitcoin and was wondering if anyone had some ideas.
I currently hold about a 50/50 split across VBTC ETF and holding Bitcoin directly on a Ledger wallet. I want to move it all over to the/a wallet but am nervous about self custody.
I've mostly been looking into either multi sig via Bitkey or Evoke, or simply doing my own multi sig arrangement and buying two more hardware wallets. I am very open to ideas, or thoughts about using multisig via Bitkey/Evoke.
I have read through this forum and picked up some good info, however as far as I could see it's been a while since BTC custody has been discussed.
Not sure if yo guys have seen this from the UK
https://www.bbc.com/news/articles/cj0r0dvgpy0o.am
A 12 year battle with the local council
I only holld A small amount, but increasing every week with DCA






Self-Custody issues
As a disclaimer, most of what I have learnt about self-custody is via Matthew Kratter at Bitcoin University. He has a TON of free videos on YouTube, but I have also joined his actual site for like $120ish AUD per month for the last few months.
Rather than respond to individual questions individually, I thought I'd just do a 'brain vomit' on the page here, as is my usual style. I won't tell you specifically what I do, but I will talk about a few different options and issues as I (and some of the more paranoid crypto bros) see them.
Ledger
A lot of the super paranoid crypto bros don't like Ledger because they do not run free and open source software. Now, I don't have the IT skills to check it even if it did, but the argument is that there are enough computer nerds with their eyes on these things (for the ones which ARE free and open source) that someone would spot something if the wallet manufacturer had created a back door into their own hardware wallets. In addition, I understand Ledger have had their client email address list or something else not terribly serious hacked in the past. Not super awesome when your company's entire reason for being is a branch of IT security. I will tell you that the first wallet I purchased was a Ledger Nano (I think S), and it was pretty easy to use. However, part of its ease of use was the lower level of security (and features) when compared to a Coldcard Q. If you're wanting to spend $500 on a wallet, I can't imagine going past that to get the new swanky Ledger, but to be fair, I haven't tried it.
General
The more paranoid among us will also tell you that using the software provided by the wallet manufacturer decreases your security immensely. i.e. I ran my Ledger wallet on Ledger Live. This is a big no-no apparently as it facilitates Ledger rug pulling you. Coldcard, for example, doesn't even have their own software I believe. I am yet to work out how you get updates for your wallets if you aren't running the manufacturer's software.
I currently own, or have owned, the following cold wallets for comparison purposes:
It's really obvious when setting these up that the Coldcard Q takes its security much more seriously than the others. It's also a lot more user friendly than the others if you're using it regularly. If you plan on putting your BTC in there and leaving it there until hell freezes over, then how user friendly it is isn't a massive issue. However, the best way to learn all this stuff is to practice it, so if you are planning on:
then that user friendliness is VERY VERY helpful. I can tell you that entering passphrases into a Jade is a big fat pain in the ass compared to a CCQ.
Multi-sig wallets
Custodial
I think I saw a comment somewhere about this decreasing your security because you are giving someone else control over your custody so I wanted to mention that. The way things like Unchained and Casa work is as follows. Say you had a two out of three multi-sig setup. You hold two of the keys and Unchained/Casa holds the third. Depending on how much you pay them, they also help you set it up and can help with any other questions that you have about it. They have NO ability to do anything with your BTC as they only have one key. However, I believe they CAN see how much BTC that you have so for a pure paranoid crypto bro, these services are a total no-go. If you lose one of your keys, then they have a back-up. I believe they also have inheritance planning options whereby you can authorise certain people to access the key in the event of your death. The other option is that I believe they have a time lock on access to the key that they hold. i.e. if a bad actor manages to get his hands on the key at your house because you are under duress, but you have your other key in another city, then if they FORCE you to call Unchained to get the third key then there is a 48 hour waiting period or something along those lines.
Non-custodial
So my understanding of the preferred solution for the more paranoid among us is the multi-vendor multi-sig solution with your keys being geographically dispersed. This means that if you're running a 2/3 MS solution, you have for example a Trezor, a Jade and a Coldcard as your three different cold wallets so no one company can rug you. In addition, you would coordinate such a set up through independent software, such as Sparrow wallet. You would then keep your keys in three different places. You would then also have to decide WTF to do with all your seed backups. If you store your seed phrase on a plate with your $500 Coldcard Q, what's the point of having an unhackable cold wallet such as the CCQ when they can just look at the plate you've stored with it?
As an aside here, if you are not planning on withdrawing your BTC often or at all, there is the option of storing your cold wallets in their blank state so no-one can steal all your BTC by finding your wallet. You then have to recover your cold wallet using your seed phrase each time you want to use it. What this means is that technically you can run a MS solution using just one cold wallet, and just recover it two times using 2 of 3 of your recovery phrases for the ultimate pain in the ass.
Running your own server
I did see someone mention Electrum servers. This is just another layer of security that is total overkill for almost everybody in my opinion and completely irrelevant until you get to the stage of running your own node first. My understanding is that if you are running Sparrow wallet through, say, the Blockstream server, then Blockstream can theoretically peak in and see your transactions. They CANNOT steal your BTC, but if you have a bazillion dollars of BTC, they may be able to see that AND it's also possible they could work out your physical address via your IP address or something along those lines (I am not an IT guy). The concern is that a bad actor with that information could physically come and try and get your keys off you. Did I mention many of these recommendations come from people I would characterise as paranoid? It is at this juncture that I remember that just because you're paranoid, that doesn't necessarily mean that everybody isn't out to get you!
If you buy a Start 9 server, then you can run Sparrow via your own node on your own Electrum server, and you have more privacy. The Start 9 does have a bunch of other features I am not all over, but I can tell you it allowed me to download the entire Blockchain in about 35 hours, and on my old laptop with an external SSD was literally taking months. What I do like about it is that you can run your own private version of mempool.space. Apparently searching your own BTC addresses on mempool.space is bad juju, and I used to do it ALL THE TIME!
Complexity
This is a huge issue. You CANNOT transfer a huge amount of BTC into your new fancy self-custody solution until you are super comfortable with it. Are you happy with your back-ups? Can you re-generate it from scratch if need be? Importantly for MS set-ups, the backup also includes the three public keys so your software understands the full set-up you're using. You can sign with two of the private keys, but without the third public key, Sparrow (for example) simply doesn't know what wallet you're trying to sign.
The biggest risk with BTC is the custody risk. The biggest issue for me is if my disinterested wife and my 11 year old son can sort it all out if I peg it unexpectedly? I can tell you, it does get easier though. You can be setting up a new solution and think you will never understand what you're doing, and then a month later you'll be transferring some sats for like the 5th time using that set-up and all of a sudden you'll wonder what all the fuss was about.
UTXO management
Ok, if I haven't lost you already...
Sparrow wallet has superior UTXO management to any other software I've played with. What this means is that all the BTC that you own isn't sitting there in one completely fungible lump like a wheelbarrow full of gold coins. It is more like the notes in your wallet and is generally made up of a bunch of lumps, or Unspent Transaction Outputs. For example, if you're transferring a million sats out of, says, Ledger Live, and you have UTXOs of 10 mill sats, and 10 UTXOs of 100 thousand sats each, how much control do you have over what gets sent? And do you even care? Well, you have a bit of control, and yes you should care. The potential problem here is that if you end up leaving yourself a bunch of small UTXOs, when on chain fees get really high (which they will), then you will end up with stranded sats, because the UTXO chunks will be too small to economically spend them. Ledger Live has some ability to choose whether to minimise your fee (take the entire amount you're transferring from one big UTXO if possible) or some other option. However, with Sparrow you can view your individual UTXOs and just click on which ones you want to spend from. Your total on chain transaction fees are higher if you are spending from more individual UTXOs, NOT if you are transferring more total sats.
Bitcoin University on YouTube has a few videos on UTXOs if you're wanting to learn more about this.
If you've read this far and have any questions feel free to hit me up directly. I am quite happy to talk about this stuff as it assists in cementing in my recently gathered knowledge AND my wife is also happy for me to talk about it to someone other than her... :D