Skip to content
Crypto Almanac Daily
C
Hardware Wallets

Cypherock

Best for verifiable firmware openness

Firmware repository:PublicSecurity or spec page:PublishedDocumentation:OpenVendor:CypherockRubric:v2.0 · verified 9 Aug 2026
Last verified August 9, 2026
Confidence ARubric v2.0Verified August 9, 2026
8.0
out of 10
Open account
Scorecard

How it rates

Key security & openness · 40%8.0
Purchase transparency · 10%8.0
Product openness · 20%10.0
Vendor transparency · 20%6.0
Public documentation surface · 10%8.0
Pros
  • Firmware source published in a public repository
  • Device security or specification page published
  • Technical documentation reachable without an account
Cons
  • No dedicated security or audit disclosure identified at this check
  • Terms page not found at the conventional address at this check
How this score was built

Each indicator scores 2, 1 or 0. A pillar is the points earned over the points available; the overall score is the weighted sum. Every source below is public — check any of them yourself.

Key security & openness · 40% weight8/10 points · 8.0/10
  • Met
    Firmware source published in a public repository

    Vendor repository reachable at this check.

    github.com/Cypherock
  • Met
    Device security or specification page published

    Security or specification page reachable at this check.

    www.cypherock.com/product/cypherock-x1
  • Not met
    Independent security research or audit programme published

    No published security research or audit programme identified at this check.

  • Met
    Technical documentation reachable without an account

    Documentation open at this check.

    www.cypherock.com/product/cypherock-x1
  • Met
    Vendor organisation identifiable from the repository

    Repository published under the vendor organisation (Cypherock).

    github.com/Cypherock
Purchase transparency · 10% weight8/10 points · 8.0/10
Product openness · 20% weight10/10 points · 10.0/10
Vendor transparency · 20% weight6/10 points · 6.0/10
  • Met
    Vendor site resolves to automated verification

    HTTP 2xx at this check.

    www.cypherock.com/
  • Met
    Vendor entity identifiable

    Vendor organisation identifiable as Cypherock.

    github.com/Cypherock
  • Not met
    Security or disclosure page published

    Not identified at this check.

  • Not met
    Terms or legal documentation published

    Not found at the conventional address at this check.

  • Met
    Product range documented publicly

    Product information published.

    www.cypherock.com/product/cypherock-x1
Public documentation surface · 10% weight8/10 points · 8.0/10

A seedless wallet splitting the key across a vault and four NFC cards under a 2-of-5 threshold, designed around recovery and inheritance rather than storage.

Our assessment

Cypherock X1 removes the seed phrase from normal use. The secret is split into five shares across the X1 Vault and four NFC cards using a 2-of-5 Shamir scheme, so any two components can recover the wallet and no single object is worth stealing on its own.

Attacking the failure that actually happens

Almost nobody loses crypto to a broken secure element. People lose it to a misplaced seed phrase, a water-damaged sheet of paper, a photograph in a cloud backup, or a relative who cannot find anything after a death. Distributing shares across five objects turns a single point of failure into a threshold, which is the right shape for the risk that is real.

How signing works

Tapping any one card to the vault reconstructs the key in volatile memory for the duration of the operation, after which it is gone. Seed export remains available for migration and estate planning, so you are not locked into the vendor's format — an important detail that some seedless designs get wrong.

Independent review, no known break

A Keylabs audit examined the architecture and found it sound, and no successful attack on the security model has been publicly reported. As with every device in this category, that is an absence of known failures rather than proof of safety.

Who it suits

Cypherock fits holders who want inheritance and recovery planning built into the device rather than improvised on paper, and who can store four cards in genuinely separate places. Buyers who want a conventional single-device workflow with a written backup will find Trezor or BitBox simpler.

Alternatives

How rivals compare

ServiceScoreBest for
Trezor9.9verifiable firmware opennessRead →
Reference

Frequently asked

Does this score mean Cypherock is secure?

No. It measures what a buyer can verify before purchase: published firmware source, documented security claims, and open documentation. Physical security is not tested by us and is not scored.

Why does firmware openness matter so much here?

It is the one substantive security property an outsider can check without specialist equipment. Everything else on a hardware wallet requires trusting the vendor or a third-party teardown.

What would raise this score?

Publishing firmware source, a dedicated security or audit page, and open technical documentation at stable public addresses — all of which are checkable by anyone.