Casa Coldcard troubleshooting support page
casa-support-coldcard-troubleshooting
Latest reviewed change
source content difference between and
Casa added a security advisory banner (updated August 1, 2026) warning of the Coldcard seed-generation flaw and recommending the device be replaced, and the page date moved from March 4, 2026 to August 6, 2026.
Help Center
Hardware devices
Coldcard
-March 4, 2026
+August 6, 2026
Coldcard troubleshooting
Coldcard Mk 3+ hardware devices are compatible with Casa multisig vaults.
+⚠️ Security Advisory (Updated August 1, 2026): Coinkite has identified a seed-generation flaw affecting certain Coldcard firmware versions. If you generated your seed on affected firmware, your funds may be at risk. We do recommend replacing this device as soon as you are able.
First lines only. The complete diff is in the timeline below.
- Organisation
- Casa
- Evidence role
- Custody guidance
- Published
- not established
- Source changes
- 1
- Detected differences
- 1
- Unreviewed
- 0
- Copies held
- 2
Casa's standing Coldcard support document. As of 3 Aug 2026 Casa has published no blog post on the incident; its only public statements are two X posts (casa-incident-guidance, nneuman-casa-migration-video). Registered as the page where written guidance would land, so any edit is recorded.
Every check is recorded, including checks that found no text change. A detected edit is therefore bounded between two checks. The publisher's exact save time is not observable from this record. Last checked .
This post is held twice: here, with this project's own note on why it matters, and again as part of the conversation captured at , which is polled for changes. Both copies are the same post; neither is a separate event.
Snapshot and diff bodies for this chain monitor are held in the local evidence archive but withheld from the public site because they can contain the addresses of people who published nothing themselves. Capture times and reviewed change summaries remain available below.
Held captures
-
Casa added a security advisory banner (updated August 1, 2026) warning of the Coldcard seed-generation flaw and recommending the device be replaced, and the page date moved from March 4, 2026 to August 6, 2026.
Recovered from the Internet Archive rather than captured by this project. The row records that third-party provenance separately from captures made by this project.
What changed from the previous capture 3 lines
Help Center Hardware devices Coldcard -March 4, 2026 +August 6, 2026 Coldcard troubleshooting Coldcard Mk 3+ hardware devices are compatible with Casa multisig vaults. +⚠️ Security Advisory (Updated August 1, 2026): Coinkite has identified a seed-generation flaw affecting certain Coldcard firmware versions. If you generated your seed on affected firmware, your funds may be at risk. We do recommend replacing this device as soon as you are able. Whether you are adding the Coldcard, doing a health check, or sending funds from your Casa vault, it has the unique benefit of offering offline-signing via PSBTs to add a signature to your vault. One thing to keep in mind when using your Coldcard is to remember to check for the most recent firmware updates here. With Coldcard, the instructions for performing a health check and signing a transaction do differ slightly. See the below articles for the instructions for each function:Extracted text as captured
Skip to content English Show submenu for translations More support Take control of your digital future. Open main navigation Close main navigation Take control of your digital future. English Show submenu for translations More support Search the Help Center There are no suggestions because the search field is empty. Help Center Hardware devices Coldcard August 6, 2026 Coldcard troubleshooting Coldcard Mk 3+ hardware devices are compatible with Casa multisig vaults. ⚠️ Security Advisory (Updated August 1, 2026): Coinkite has identified a seed-generation flaw affecting certain Coldcard firmware versions. If you generated your seed on affected firmware, your funds may be at risk. We do recommend replacing this device as soon as you are able. Whether you are adding the Coldcard, doing a health check, or sending funds from your Casa vault, it has the unique benefit of offering offline-signing via PSBTs to add a signature to your vault. One thing to keep in mind when using your Coldcard is to remember to check for the most recent firmware updates here. With Coldcard, the instructions for performing a health check and signing a transaction do differ slightly. See the below articles for the instructions for each function: Performing a Health Check with Coldcard Signing a Transaction With Coldcard Some common Coldcard errors are: Failure. My XFP not involved Change fraud Couldn't find signature Failure Invaid PSBT multisig.py 715 Failure Invalid PSBT multisig.py 716 Failure XPUBs in PSBT do not match any known wallet Error: file must be .psbt "Sorry, there was a problem completing your Health Check. Problem Detail: Error. No authorization token was found" Failure. My XFP not involved Solution: Double-check that the Coldcard is the device used for that vault. If you are performing a key rotation make sure that you are not using the device you marked for replacement to try to sign. Change fraud There is an issue with the Coldcard firmware where it looks for the OP_CHECKMULTISIG opcode in the redeem script, but can't find it because it isn't taking into account that we use nested segwit (P2SH-P2WSH). It's assuming all addresses are P2SH or P2WSH. You can get around this by going to Settings > Multisig Wallets > Skip Checks, and turning that setting on. Couldn't find signatureExcerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.
-
Recovered from the Internet Archive rather than captured by this project. The row records that third-party provenance separately from captures made by this project.
What changed from the previous capture 0 lines
Extracted text as captured
Skip to content English Show submenu for translations More support Take control of your digital future. Open main navigation Close main navigation Take control of your digital future. English Show submenu for translations More support Search the Help Center There are no suggestions because the search field is empty. Help Center Hardware devices Coldcard March 4, 2026 Coldcard troubleshooting Coldcard Mk 3+ hardware devices are compatible with Casa multisig vaults. Whether you are adding the Coldcard, doing a health check, or sending funds from your Casa vault, it has the unique benefit of offering offline-signing via PSBTs to add a signature to your vault. One thing to keep in mind when using your Coldcard is to remember to check for the most recent firmware updates here. With Coldcard, the instructions for performing a health check and signing a transaction do differ slightly. See the below articles for the instructions for each function: Performing a Health Check with Coldcard Signing a Transaction With Coldcard Some common Coldcard errors are: Failure. My XFP not involved Change fraud Couldn't find signature Failure Invaid PSBT multisig.py 715 Failure Invalid PSBT multisig.py 716 Failure XPUBs in PSBT do not match any known wallet Error: file must be .psbt "Sorry, there was a problem completing your Health Check. Problem Detail: Error. No authorization token was found" Failure. My XFP not involved Solution: Double-check that the Coldcard is the device used for that vault. If you are performing a key rotation make sure that you are not using the device you marked for replacement to try to sign. Change fraud There is an issue with the Coldcard firmware where it looks for the OP_CHECKMULTISIG opcode in the redeem script, but can't find it because it isn't taking into account that we use nested segwit (P2SH-P2WSH). It's assuming all addresses are P2SH or P2WSH. You can get around this by going to Settings > Multisig Wallets > Skip Checks, and turning that setting on. Couldn't find signature Solution: Make sure to upload the correct file to confirm this request. It will prompt you with the file name to look for in the error message.Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.
0 presentation-noise differences. Sidebar, ticker and other page chrome churn that our review classified as not being changes to what the source says.
The excerpts and plain unified diffs above show the text this project held and how it changed. To verify a quotation, compare it against the page itself or against the Internet Archive's copies, which are independent of this project.
Complete captures are held offline rather than mirrored here, so this page shows diffs and excerpts. If a quotation is ever disputed, the full copy can be produced. Ask.
Compare the screenshot or a quotation against the original while it is available.