Who Really Holds Your Bitcoin? A Practical Guide to Crypto Custody for Every Portfolio Size
Photo by Photo by Shubham Dhage on Unsplash on Unsplash
For years, the phrase "not your keys, not your coins" has served as a kind of battle cry in cryptocurrency circles. It is a memorable slogan, and it contains genuine truth — but like most slogans, it compresses a complicated reality into something dangerously simple. The custody decision is not a binary choice between total self-sovereignty and blind trust in an exchange. It is a layered risk management problem, and the correct answer depends heavily on your portfolio size, technical comfort level, and tolerance for different categories of loss.
This guide walks through the three principal custody models available to US crypto holders in 2024: exchange custody, hardware wallets, and multi-signature arrangements. Each model carries a distinct set of trade-offs, and understanding those trade-offs clearly is the first step toward making an informed decision.
Exchange Custody: Convenience With a Hidden Balance Sheet Risk
When a US investor purchases Bitcoin or Ethereum on a major centralized exchange — Coinbase, Kraken, or Gemini, for example — the coins are typically held in the exchange's omnibus wallets. The investor receives a balance entry in a database, not direct ownership of an on-chain address. This distinction matters enormously.
The practical advantages are real. Exchange custody requires no technical setup, no seed phrase management, and no hardware to purchase or protect. Transactions are instant within the platform, customer support exists, and in many cases FDIC insurance covers the fiat portion of accounts (though it emphatically does not cover crypto holdings). For a trader who moves in and out of positions frequently, keeping assets on an exchange reduces friction at every step.
The risks, however, are equally concrete. Exchange insolvencies — FTX being the most dramatic recent example — can wipe out customer balances entirely. Even solvent exchanges experience hacks, withdrawal freezes, and account suspensions tied to compliance reviews. US customers of FTX lost billions in assets that were nominally "in their accounts" but were, in practice, commingled with institutional funds.
For amounts under approximately $1,000 to $2,000, exchange custody may represent a reasonable trade-off for active traders. Above that threshold, the concentration risk becomes increasingly difficult to justify without a mitigation strategy.
Hardware Wallets: True Self-Custody and Its Genuine Costs
A hardware wallet — devices produced by manufacturers such as Ledger, Trezor, or Coldcard — stores private keys on a dedicated piece of offline hardware. When a transaction is signed, the private key never touches an internet-connected device. This architecture eliminates the exchange counterparty risk that made FTX-style collapses so devastating.
The security model is robust, but the responsibility it places on the holder is significant. Self-custody introduces what security professionals call "key-person risk" — the possibility that the holder themselves becomes the single point of failure. Seed phrases stored in a home safe can be destroyed in a fire. Phrases committed to memory can be forgotten. Hardware devices fail. Heirs who are not briefed on recovery procedures may be unable to access funds after the holder's death.
The financial cost of a quality hardware wallet ranges from roughly $79 to $150 for a standard device, with air-gapped devices such as the Coldcard reaching higher price points. That is a one-time expense, but the ongoing cost of maintaining secure backups — fireproof storage, geographic redundancy, potentially a safety deposit box — should be factored into any honest accounting.
For US holders with portfolios in the range of $5,000 to $50,000 or more, a hardware wallet is generally the appropriate primary custody solution, provided the holder is willing to invest time in proper backup procedures.
Multi-Signature Wallets: Institutional-Grade Security for Serious Holders
Multi-signature (multi-sig) custody requires multiple private keys to authorize a transaction. A common configuration is a 2-of-3 arrangement: three keys are created, and any two of them must sign a transaction before it executes. Keys can be distributed across multiple hardware devices, geographic locations, or even among trusted parties.
This architecture eliminates single points of failure at the key level. If one hardware device is lost or stolen, funds remain inaccessible to an attacker because only one of three keys has been compromised. It also provides a meaningful solution to the inheritance problem — a third key can be held by a trusted attorney or family member under specific legal instructions.
Services such as Casa, Unchained Capital, and Anchorage Digital offer multi-sig custody solutions tailored to US customers, with varying degrees of institutional involvement. Casa's personal plans begin around $120 per year; Unchained's collaborative custody model involves the company holding one key in a 2-of-3 arrangement, providing a recovery path without the company having unilateral access to funds.
The primary drawbacks are complexity and cost. Setting up and maintaining a multi-sig arrangement requires more technical engagement than a standard hardware wallet, and the annual fees for managed services add up over time. For portfolios below $25,000, the cost-benefit calculation may not favor multi-sig. For holdings above $100,000, it is difficult to argue against some form of multi-key architecture.
Recovery Scenarios: Where Each Model Actually Fails
Understanding failure modes is as important as understanding security features. Consider three common scenarios:
Scenario 1 — Hardware failure or loss. A hardware wallet stops functioning. With a properly stored seed phrase, recovery is straightforward: purchase a new device, enter the seed phrase, and access is restored. Without that seed phrase, the funds are permanently inaccessible. Exchange custody would have avoided this outcome entirely — but would have introduced the counterparty risks described above.
Scenario 2 — Exchange insolvency. As FTX demonstrated, even exchanges that appear well-capitalized can collapse quickly. Customers with self-custody solutions are unaffected. Those holding assets on the exchange become unsecured creditors in bankruptcy proceedings.
Scenario 3 — Holder incapacitation or death. This is where many self-custody arrangements fail silently. A holder who passes away without providing heirs with seed phrase access or clear recovery instructions effectively destroys those assets. Multi-sig arrangements with a trusted third-party key holder are specifically designed to address this scenario.
Matching Custody Model to Risk Profile
No single custody model is universally correct. A practical framework for US holders might look like this:
- Active traders with small positions (under $2,000): Exchange custody is acceptable, but limit exposure to any single platform and use exchanges with strong US regulatory standing.
- Moderate holders ($2,000–$50,000): A quality hardware wallet with geographically redundant seed phrase storage represents the appropriate baseline.
- Larger portfolios ($50,000–$250,000): Consider a hybrid approach — keeping a trading allocation on a regulated exchange while moving the majority of holdings to self-custody.
- High-net-worth holders (above $250,000): Multi-signature custody, potentially with a managed service provider, becomes the defensible standard. Estate planning integration is essential at this level.
The Honest Bottom Line
The "not your keys, not your coins" principle is not wrong — it is incomplete. Self-custody transfers risk from exchanges to the individual holder. That transfer is almost always worth making above a certain portfolio threshold, but it demands genuine engagement with backup procedures, estate planning, and ongoing security hygiene.
At BitKarvm, we believe that informed custody decisions are as fundamental to long-term crypto success as any trading strategy. The most sophisticated entry and exit signals in the world provide little value if the assets being traded are held in a structure that can fail catastrophically. Take the time to evaluate your current custody arrangement against the framework above — your portfolio's security depends on it.