Here's a wild trade-off that makes you think.

Coinkite wipes all customer data after 120 days. The idea? Protect people from breaches. Can't leak what you don't have, right?

But now there's a vulnerability in old Coldcards. And guess what — they literally can't warn anyone who bought one in the past 5 years. The records are gone.

So you get privacy by default, but zero safety net when something breaks. It's like burning your address book to avoid spam, then realizing you need to warn your friends about something urgent.

This is the kind of thing that sounds great on paper until it isn't. Privacy-first design has real costs. Sometimes those costs show up years later, in ways nobody predicted.

No easy answers here. Just a reminder that every system has edges, and those edges cut both ways.