Trezor Safe 5
Open firmware with a secure element, without a compromise on either
Trezor's Safe line finally pairs the company's fully open firmware with a proper secure element, closing the gap that made earlier models vulnerable to physical extraction. The colour touchscreen makes verifying what you sign genuinely easier.
In its favour
- Firmware is fully open source and independently reviewable
- Secure element protects against physical seed extraction
- Excellent transaction display and clear-signing support
Against it
- Fewer supported chains than the market leader
- Older Trezor models remain vulnerable to physical attack
- VendorSatoshiLabs, Czechia
- FirmwareOpen source
- Secure elementYes
The weighted mean of the 4 axes below — each read from the fact printed beside it.
- Strongest
- Openness9.6
- Weakest
- Usability8.8
Scorecard — and what it was read from
- Security architecture 9.2
- Pairs a certified secure element with PIN verification inside the element; published research showed earlier Trezor models without a secure element were vulnerable to physical seed extraction, which this line was built to address.
- Openness 9.6
- Firmware is published under an open licence with reproducible builds, and the vendor runs a public vulnerability disclosure process.
- Recovery model 9.0
- Standard BIP-39 seed with optional passphrase plus SLIP-39 share-based backup; recovery works on any compatible wallet.
- Usability 8.8
- Colour touchscreen decodes transaction details before signing; supported by the major third-party wallets.