COLDCARD RNG incident the public record, collected and explained
Informational only, and this site never asks for your seed words. details

Informational only. This is an open source collection of what others have published about the incident, together with an explanation of it. It is not financial, security or legal advice, and not a substitute for professional advice about your own situation. It is not affiliated with, endorsed by, or speaking for Coinkite. Material is attributed and quoted as published; where sources disagree their scenarios are kept separate with their assumptions rather than reconciled into one answer. Everything is meant to be checked against the linked evidence rather than taken on trust. Act on your own judgement about a particular situation. Editorial standards and corrections.

Do not disclose recovery material to a website, form, message or support account. This site never asks for it, and contributions containing recovery words or private keys are not accepted.

Update on Customer Data Retention

coinkite-data-retention-update

https://blog.coinkite.com/update-on-customer-data-retention/

Organisation
Coinkite
Evidence role
Vendor statement
Published
2026-08-07
Source changes
0
Detected differences
0
Unreviewed
0
Copies held
1

The vendor's own post on a temporary change to its customer-data retention and blanking practices after the incident. Registered 7 August 2026 because the record already held the 2 August outreach exchange — Coinkite saying customer personal data is deleted and many customers were therefore unreachable (coldcard-pii-policy), Satochip asking how store customers received emails under a 90-day premise (satochip-data-retention-question), and the June paper spam post's 120-day figure — with no primary statement reconciling them. The blog index (coinkite-blog-index) carried this post on 7 August; its displayed date moved from Aug 6 to Aug 7 between two captures of that index, so the publisher retimestamped it and the published date above is the one currently shown rather than a resolved publication time.

At first capture the post states that Coinkite's standard practice is to blank customer records automatically after 120 days, retaining only email address and country of residence, with accelerated blanking available on request; that the automated blanking process is temporarily suspended because of legal obligations arising from the incident, including preservation of records that may be relevant to "ongoing and anticipated legal proceedings"; and that a customer may ask to be exempted from the preservation and have the standard policy applied. It is the vendor's own account of its retention practice and of why it changed, not an independently checkable fact about what is stored.

Every check is recorded, including checks that found no text change. A detected edit is therefore bounded between two checks. The publisher's exact save time is not observable from this record. Last checked .

  1. Earliest copy held Current
    seen · Captured here 2,295 chars
    Extracted text as captured
    Blog
    Careers
    Contact
    RSS
    Email Newsletter
    Store
    ×
    Home
    Blog
    Careers
    Contact
    RSS
    Email Newsletter
    Store
    ← Back to posts
    Update on Customer Data Retention
    Published Aug 7, 2026
    Categories: ckcc
    We want to inform our customers of a change to our data-handling practices in
    connection with the security incident disclosed on July 30,
    2026.
    As many of you know, our standard practice has been to automatically blank
    customer records after 120 days, retaining only email addresses and country of
    residence. We have also offered customers the option to request accelerated
    blanking at any time after delivery.
    Due to legal obligations arising from the security incident, including the
    preservation of records that may be relevant to ongoing and anticipated legal
    proceedings, we have temporarily suspended our automated data-blanking process.
    This means that customer records that would otherwise have been blanked under
    our standard schedule will be retained until further notice.
    However, if you would like us to apply our existing retention policies to
    your data, we will exempt them from this protocol. Please confirm that you do
    not want us to preserve your data by contacting
    [email protected].
    We understand that this is a departure from our published practices and that
    our customers value the privacy protections we have committed to. We want to
    be transparent about why this change has been made. We are required by law to
    preserve records that may be relevant to legal proceedings. This obligation
    applies regardless of our internal data-retention policies and overrides our
    standard deletion schedule.

    Excerpt only. The complete copy is held offline and backs quotations on this site. The original publication remains the canonical public source.

How to check this yourself

The excerpts and plain unified diffs above show the text this project held and how it changed. To verify a quotation, compare it against the page itself or against the Internet Archive's copies, which are independent of this project.

Complete captures are held offline rather than mirrored here, so this page shows diffs and excerpts. If a quotation is ever disputed, the full copy can be produced. Ask.