Conversation

Lazyweb, crypto question. When storing private keys encrypted with a passphrase, is there a compelling reason to do so in a way that makes it easily testable whether the passphrase was correct?
3
Obviously there's a positive ux reason, so what I'm asking is if there's a compelling argument that the loss of security by doing so is inconsequential.
2
Replying to
Under duress, you can give the wrong passphrase resulting in deriving a different key. BIP39 seed phrases use this for an optional passphrase added to the end of the seed phrase. Trezor (who created BIP39) treat it as an advanced feature since it can result in harmful mistakes.
1
2
Replying to and
If you forget the passphrase though, you lose everything. People might also make the mistake of entering the wrong one and then using the wrong keys (wallet). They generate all the necessary keys via deterministic derivation paths from the initial seed for all different uses.
1