FrostSnap and FROST: A Reality Check on Threshold Signing
Every few years a wallet promises to break every rule. FrostSnap is the current candidate: a Bitcoin self-custody system built on FROST, a threshold Schnorr signing protocol, where your devices generate the wallet together and the full private key never exists anywhere, not even for an instant.
In May 2026, a skeptical Stacker News post asked the uncomfortable questions: is FROST actually plug-and-play on Bitcoin yet, and how does FrostSnap handle distributed key generation without a trusted setup? Those questions are still worth asking. Here is what is verified and what is not.
What is verified: the product is real
FrostSnap is a real company with a real product line, and the receipts are public:
- The site and docs are live. frostsnap.com publishes a full security architecture document explaining the threshold t-of-n model. A 2-of-3 wallet needs any 2 of 3 devices to sign. Losing one device never puts funds at risk.
- The code is open source. The entire stack is MIT licensed on GitHub: ESP32 Rust firmware for the devices, a core Rust library for coordinator and signer state, the comms protocol, and a cross-platform Flutter wallet app that acts as the FROST coordinator.
- The team is named. Lloyd Fournier (cryptographer and architect), Nick Farrow, Adam Mashrique, Evan Lin, and Alex Hanley. An Australian and Malaysian company, with hardware assembled and firmware flashed in-house in Malaysia.
- The cryptography is documented. Their FROST implementation comes from secp256kfun, and their docs credit Bitcoin’s Taproot upgrade for making Schnorr threshold signatures practical: one public key on chain, single-sig fees, hidden multisig for privacy, straightforward recovery.
One nice design detail from their docs: Frostsnap devices are not trusted to generate keys on their own. Your phone or laptop participates in key generation and verifiably contributes entropy. That is a direct answer to the class of RNG failure that burned Coldcard users in July 2026 (public write-up).
What is not settled: the open questions
The May 2026 skepticism raised two technical points, and I could not find public resolutions for either:
- How mature is FROST on Bitcoin, really? The post claimed FROST still needs MuSig2 wrappers or pre-signed flows on current Bitcoin and that native threshold-signing support is not there yet. FrostSnap’s own docs describe a working FROST implementation over Taproot, which suggests the protocol side functions. Whether that counts as “plug-and-play” depends on your definition. Integrating with the existing wallet ecosystem is still early: a Sparrow feature request (issue #2039) asks for FrostSnap support as a hardware signing device, which tells you it is not yet a drop-in signer for the most popular coordinator.
- The trusted-setup question. Distributed key generation without a trusted dealer is the hard part of any threshold scheme. The community asked how FrostSnap handles it. I found no public answer framed in those terms. Their docs describe the devices generating the wallet together, but the precise DKG ceremony and its trust assumptions deserve a direct answer from the team before you bet a treasury on it.
Treat both as open community questions, not established facts in either direction.
How it compares to multisig
FROST threshold signing and multisig solve the same problem, no single point of failure, with different tradeoffs. Multisig is battle-tested, coordinator-agnostic, and recoverable with a descriptor backup and standard tooling. FROST gives you single-sig fees, on-chain privacy (the threshold setup is invisible), and no descriptor to back up, since there is no multisig script at all.
The cost is maturity and ecosystem. Multisig works today in Sparrow, Nunchuk, Electrum, and a dozen hardware wallets. FROST works in FrostSnap’s own stack, and the rest of the ecosystem is catching up.
The bottom line
FrostSnap is not vaporware. It is a serious, open-source attempt at threshold self-custody with real engineering behind it. It is also not yet the default choice. If you want threshold-style security today with maximum tooling support, a conventional 2-of-3 multisig remains the conservative pick. If you want to live on the frontier and you understand the open questions above, FrostSnap is the most credible way to do it.
For a conventional multisig build, compare multisig-ready hardware wallets, check device and coordinator compatibility here, or get a personalized recommendation from the multisig wizard.
Discussed on Stacker News: FrostSnap | The Bitcoin Wallet That Breaks Every Rule
Encuentra tu configuración
Frontier cryptography or boring battle-tested multisig? Answer six questions and get a recommended setup for your situation: take the multisig wizard.


