Best Hardware Wallets in September 2026

Marcus Webb9 mins read
Published Updated

Hardware wallets keep private keys off internet-connected devices. Here is what separates a good one from a marketing exercise, and what to check before buying.

How we chose

Our criteria are deliberately narrow, because most marketing claims in this category are unverifiable. We look at whether the firmware is open source or at least independently audited, whether the device has a screen you can verify transactions on, whether it uses standard seed phrase recovery, the vendor's history of disclosed vulnerabilities and how transparently they were handled, and whether the supply chain includes tamper-evident packaging.

We take no payment for placement. Commercial links are marked.

What matters and what does not

FeatureWhy it mattersVerdict
On-device screenLets you verify what you sign, defeating a compromised computerEssential
Open-source firmwareIndependent review of what the device actually doesStrongly preferred
Standard seed phraseRecovery works on other brands, no vendor lock-inEssential
Secure element chipResists physical extraction of the keyValuable
BluetoothConvenience for mobile useOptional, adds attack surface
Number of supported coinsMarketing headlineRarely the deciding factor

What a hardware wallet actually protects against

It defends against remote attacks: malware reading files, a hacked computer, a malicious website. The key is generated on the device and never leaves it, so none of those reach it.

Pros

  • Remote key extraction is effectively impossible
  • You confirm every transaction on a trusted screen
  • Recovery is standard and portable between vendors

Cons

  • Does not stop you approving a malicious transaction yourself
  • Physical theft plus a discovered seed phrase still loses funds
  • A fake or tampered device bought second-hand is a real risk

The last point deserves emphasis: never buy a hardware wallet second-hand or from a marketplace reseller. Buy directly from the manufacturer.

Setting one up safely

Generate the seed phrase on the device itself — never accept a pre-filled phrase supplied in the box, which is a known scam. Write the phrase on paper or metal, store it offline, and keep a second copy in a separate physical location. Test recovery with a small amount before moving significant funds.

Read the seed phrase and cold storage explainers before you start.

When the key itself is the weak point

A hardware wallet's central promise is that the key is generated on the device and never leaves it. That promise has a step before it that almost nobody checks: the key has to be generated well in the first place.

In July 2026 Coinkite disclosed that a build error in its Coldcard firmware had, since March 2021, routed seed generation through the scripting runtime's default software random number generator instead of the hardware one. Affected devices produced seeds with roughly 72 bits of entropy instead of 128 — a search space smaller by a factor of about 72 quadrillion. Updating the firmware does not repair a seed already created that way; the funds have to be moved to a wallet generated on patched firmware.

We are not singling out one vendor. The failure is instructive precisely because Coinkite has a strong disclosure record and published the defect against its own product in technical detail, naming the exact symbol that resolved wrongly. A vendor that has never published anything is not safer — it is less observed.

Two practical consequences for anyone choosing a device:

Prefer devices that let you supply your own entropy. Dice-roll entry was the difference between a sound and an unsound seed for the affected models. It removes your dependence on the vendor's build system being correct, and it takes one evening.

Read a vendor's disclosure history before buying, not after. Our criteria above weight how vulnerabilities were handled, and this is why. The full mechanism is in our guide to how hardware wallets generate seeds, and the incident itself in our report on the Coldcard defect.

Who should not bother

If your total holdings are worth less than the device, the maths does not work yet. A reputable mobile wallet with a properly stored seed phrase is a reasonable interim step — see the wallet types roundup.

Nothing here is investment advice.

FAQ

Are hardware wallets worth it?+

For holdings worth substantially more than the device, yes — it removes the entire category of remote key theft. For very small balances the cost may not be justified yet.

Can a hardware wallet be hacked?+

Remotely, extracting the key is effectively infeasible on a well-designed device. The realistic risks are different: approving a malicious transaction yourself, a tampered device bought from a reseller, or someone finding your written seed phrase.

What if the manufacturer goes out of business?+

Your funds are unaffected. Because recovery uses a standard seed phrase, you can restore the same wallet on another vendor's device or in a software wallet. This is exactly why standard recovery matters.

All roundups

DISCLAIMER

WARNING: The content on this site should not be considered investment advice. Investing is speculative. When investing your capital is at risk. This site is not intended for use in jurisdictions in which the trading or investments described are prohibited and should only be used by such persons and in such ways as are legally permitted. Your investment may not qualify for investor protection in your country or state of residence, so please conduct your own due diligence. This website is free for you to use but we may receive commission from the companies we feature on this site.