Skip to main content

Search...

Popular searches
Independent Expert Review

Foundation Passport Prime Review

Foundation's 2025 flagship: an open-source, audited security platform (KeyOS) combining a Bitcoin wallet with FIDO keys, 2FA and encrypted storage on a color touchscreen.

Frost
Reviewed by Frost

We may earn a commission from purchases through affiliate links. This does not affect our ratings. Affiliate Disclosure

Foundation Passport Prime hardware wallet with 3.5 inch color touchscreen
70
Overall Rating
Based on security, usability, ecosystem, privacy & recovery
$349
Official price
Foundation Passport Prime
Foundation Passport Prime
70
$349
70
/100
Quick Verdict

The Foundation Passport Prime ($349, 2025) is less a wallet than a programmable security platform: its KeyOS Rust microkernel runs a Bitcoin wallet alongside FIDO security keys, TOTP/2FA and 50 GB of encrypted storage. It pairs an ATECC608C secure element with a Microchip SAMA5D2 processor, was independently audited by Keylabs with no critical or high findings, and backs up the seed as a 2-of-3 Shamir (SLIP-39) split across tamper-evident NFC Keycards. Hardware and software are open source (GPLv3), though reproducible builds are not yet available. It is best for Bitcoin-first power users who want an audited, multi-purpose device; altcoin holders and reproducibility purists should look elsewhere.

Security Warning

Avoid buying from unofficial marketplaces — counterfeit risk.

Rating Breakdown

Spec-based rating
Read our full methodology →

How we rate wallets

40+ verified specs scored per wallet Published formula — not subjective editor picks
See methodology

Key Takeaways

Benefits

  • KeyOS turns it into a programmable platform: Bitcoin wallet + FIDO keys + 2FA + 50GB encrypted storage
  • Independently audited by Keylabs with no critical or high-severity findings
  • 2-of-3 Shamir (SLIP-39) backup onto tamper-evident NFC Keycards by default
  • ATECC608C secure element with a SAMA5D2 security processor and secure boot
  • Open-source hardware and software (GPLv3)
  • 3.5-inch color touchscreen with QR, microSD, NFC and post-quantum-encrypted Bluetooth
  • Bitcoin multisig up to 15 signers with output-descriptor export

Limitations

  • At $349 it costs more than single-purpose Bitcoin signers
  • Reproducible builds are not yet available, so shipped firmware cannot be verified against source
  • First-party app is Bitcoin-only; altcoins require third-party apps
  • Larger attack surface as a general-purpose app platform than a minimal signer
  • Bluetooth and NFC add wireless interfaces versus strictly air-gapped designs
Best for
Multisig
Security Level
Good
Value
Poor
Audit Status
Audited by Keylabs (team behind wallet.fail)

Seen enough?

Foundation Passport Prime · From $349 · Rated 70/100

Buy now

Affiliate link — we may earn a commission at no extra cost to you. Learn more about our affiliate policy

Technical Specifications

Foundation Passport Prime

Key specifications

See all details
Secure Element
Yes
Open Source
Yes
USB Connection
Yes
Bluetooth
Yes
Supported OS
Windows, macOS, Linux, iOS, Android
Seed Phrase Length
24 words
Supported Networks
1+ networks
General Information 5 items
Device Type Hardware Wallet
Manufacturer Foundation
Release Year 2025
Price $349
Bitcoin Mode Bitcoin Only
Security & Protection 5 items
Secure Element Yes
Open Source Yes
Authenticity Verification Yes
PIN Protection Yes
Passphrase Support Yes
Connectivity 5 items
USB Connection Yes
Bluetooth Yes
NFC Yes
QR Code Yes
Air-Gapped Yes
Physical Characteristics 5 items
Dimensions 104.8 × 55.5 × 11 mm
Weight 93g
Display 3.5" IPS Color Touchscreen (Gorilla Glass, 480x800) (3.5")
Body Material Anodized aluminium
Battery 1100 mAh
Software & Compatibility 4 items
Desktop Support Yes
Mobile Support Yes
Supported OS Windows, macOS, Linux, iOS, Android
Supported Networks 1+ networks
Recovery & Backup 3 items
Seed Phrase Standard SLIP39 (2-of-3 Shamir) + BIP39 import
Seed Phrase Length 24 words
Shamir Backup (SLIP39) Yes

Foundation Passport Prime — General Information

Foundation Passport Prime — Hardware Wallet manufacturer: Foundation (2025). Secure Element: Yes. Supported Networks: 1+ networks.

Seen the full specs? Check the latest price and availability.

Foundation Passport Prime · From $349 · Rated 70/100

Buy now

Affiliate link — we may earn a commission at no extra cost to you. Learn more about our affiliate policy

Supported Networks

1 networks · 1 native · 0 third-party

Expert Review

TL;DR

The Prime is built on KeyOS, a Rust microkernel that isolates each app, and pairs an ATECC608C secure element with a Microchip SAMA5D2 security processor. Keys are generated and held in the secure element and are non-extractable, and the device verifies its firmware via secure boot.

Its strongest credential is an independent audit by Keylabs (the team behind wallet.fail) that reported no critical or high-severity findings. Hardware and firmware are open source under GPLv3 — but reproducible builds are not yet available, so users cannot yet verify that shipped binaries match the published source. As a general-purpose app platform it also carries a larger attack surface than a single-purpose signer.

SecurityKey Factor

By default the Prime splits the seed using 2-of-3 Shamir Secret Sharing (SLIP-39) onto three tamper-evident NFC Keycards, so any two cards reconstruct the wallet and losing one card is not fatal. This removes the single-point-of-failure of a paper seed.

Standard BIP-39 import/export (12/24 words), a BIP-39 passphrase for hidden wallets, and BIP-85 deterministic child seeds are all supported. The trade-off is physical: you now manage a set of cards rather than one backup.

Recovery & backups

The Prime has a 3.5-inch Gorilla Glass color touchscreen with haptics — the largest in Foundation’s lineup — and a rechargeable battery in an anodized aluminium body. First-time setup takes roughly 18 minutes.

Beyond signing, it doubles as a FIDO2 security key, a TOTP/2FA authenticator and a 50 GB encrypted file vault, which is unusual for a hardware wallet and broadens who it is useful to.

Usability / UX

The first-party app is Bitcoin-only, with PSBT support, multisig up to 15 signers and output-descriptor export for coordinators such as Sparrow, Specter and Nunchuk. Altcoins are possible only through third-party KeyOS apps (e.g. Cake Wallet), not the native wallet.

It connects via QR (animated UR2.0), microSD, NFC and the post-quantum-encrypted QuantumLink Bluetooth, and pairs with the Envoy app on iOS and Android plus desktop coordinators. There is no built-in WalletConnect.

Ecosystem & integrations

No account registration is required, and the device can operate fully air-gapped over QR codes or microSD. Companion data in Envoy is encrypted, and Foundation does not require telemetry.

The privacy trade-off is connectivity: the Prime includes Bluetooth (QuantumLink) and NFC, so it presents more wireless interfaces than a strictly air-gapped, QR-only device — even though that Bluetooth link is post-quantum encrypted.

Privacy

At $349 the Prime sits at the premium end of the market. Its value is in consolidation, not coin coverage:

  • Foundation Passport ($199) — the same air-gapped Bitcoin lineage without the platform, touchscreen or Shamir cards.
  • Ngrave Zero ($398) — fully air-gapped and multi-coin with an EAL7 OS, but closed-source.
  • Trezor Safe 7 ($249) — cheaper, open-source with reproducible builds, but a single-purpose signer.

You are paying for an audited, open platform that replaces several security devices at once.

Price & value

The Passport Prime earns its $349 price through breadth rather than coin coverage: a credit-card-sized, audited, open-source security platform that consolidates a Bitcoin wallet, FIDO keys, 2FA and encrypted storage into one device with a polished color touchscreen.

Buy this wallet if:

  • You are Bitcoin-first and want a single audited device that also replaces your FIDO security key, authenticator app and an encrypted file vault.
  • You value a strong default backup — 2-of-3 Shamir across physical NFC Keycards — over writing a single seed phrase on paper.
  • You want open-source hardware and software with a published third-party audit (Keylabs).

Look elsewhere if:

  • You need broad altcoin support out of the box — the first-party app is Bitcoin-only and altcoins require third-party apps.
  • You require reproducible builds today, or want the smallest possible attack surface of a minimal air-gapped signer.
  • You want the cheapest reliable signer — a classic Passport or Trezor Safe costs less.

Our Verdict

The Passport Prime earns its $349 price through breadth rather than coin coverage: a credit-card-sized, audited, open-source security platform that consolidates a Bitcoin wallet, FIDO keys, 2FA and encrypted storage into one device with a polished color touchscreen.

Buy this wallet if:

  • You are Bitcoin-first and want a single audited device that also replaces your FIDO security key, authenticator app and an encrypted file vault.
  • You value a strong default backup — 2-of-3 Shamir across physical NFC Keycards — over writing a single seed phrase on paper.
  • You want open-source hardware and software with a published third-party audit (Keylabs).

Look elsewhere if:

  • You need broad altcoin support out of the box — the first-party app is Bitcoin-only and altcoins require third-party apps.
  • You require reproducible builds today, or want the smallest possible attack surface of a minimal air-gapped signer.
  • You want the cheapest reliable signer — a classic Passport or Trezor Safe costs less.
Ready to buyFoundation Passport Prime?

We may earn a commission if you purchase through our links. This doesn't affect our editorial independence.

Buy now
DefiImpermanent Loss

Impermanent loss happens when asset prices in a liquidity pool diverge from external markets, reducing the value of liquidity providers' holdings compared to simply holding the assets.

Read full definition
SecuritySecure Boot

Secure Boot is a security feature that ensures only trusted software runs on a device by verifying its integrity during startup, preventing unauthorized code execution in crypto systems.

Read full definition
SecurityReproducible Builds

Reproducible Builds refer to the process where the same source code consistently produces identical binary outputs, ensuring verifiable and trustworthy software in blockchain and crypto projects.

Read full definition
SecurityShamir Secret Sharing

Shamir Secret Sharing (SSS) divides a secret, like a crypto wallet seed, into multiple shares. A threshold number of shares reconstructs it, enhancing security as in SLIP-39 backups.

Read full definition
BlockchainBIP39

BIP39 is a standard for generating mnemonic seed phrases that are used to create deterministic wallets and securely back up cryptocurrency private keys.

Read full definition
SecurityPassphrase

A passphrase is an additional security layer for cryptocurrency wallets, acting as a 25th word in the BIP39 seed phrase, protecting access to hidden wallets.

Read full definition
BlockchainBIP85

BIP85 is a Bitcoin Improvement Proposal for generating child seeds from a master seed, providing deterministic entropy for use in secure key derivation and backup processes.

Read full definition
SecurityBackup

A backup in cryptocurrency is a secure copy of a wallet's seed phrase or private keys. It enables recovery of funds if the original wallet is lost or damaged.

Read full definition
HardwareFoundation

Foundation refers to the Passport, a Bitcoin-only hardware wallet by Foundation Devices that securely stores private keys offline for self-custody.

Read full definition
SecurityTwo-Factor Authentication

Two-Factor Authentication (2FA) secures cryptocurrency accounts and wallets by requiring two verification methods, such as a password plus a code from an authenticator app.

Read full definition
BlockchainBitcoin

Bitcoin (BTC) is the first decentralized cryptocurrency, launched in 2009. It uses blockchain technology for secure, peer-to-peer digital transactions without intermediaries.

Read full definition
TransactionPSBT

PSBT (Partially Signed Bitcoin Transaction) is a Bitcoin transaction format that allows multiple parties to sign a transaction incrementally before finalizing it.

Read full definition
TransactionMultisig

Multisig (multi-signature) is a security feature that requires multiple private keys to authorize a transaction, enhancing protection against unauthorized access in blockchain networks.

Read full definition
WalletSparrow Wallet

Sparrow Wallet is a desktop Bitcoin wallet that focuses on security, privacy, and advanced features for managing Bitcoin transactions and keys.

Read full definition
WalletSpecter

Specter is a Bitcoin hardware wallet solution designed for advanced users, offering secure storage through a customizable, self-hosted setup with options like Specter Desktop and Specter DIY.

Read full definition
DefiWalletConnect

WalletConnect is a protocol that enables secure communication between decentralized applications (dApps) and mobile wallets through QR code scanning or deep linking.

Read full definition
HardwareTelemetry

Telemetry in cryptocurrency and blockchain refers to the automatic collection and transmission of anonymous usage data, metrics, and error reports from wallets or nodes to improve software.

Read full definition
BlockchainUTXO

UTXO (Unspent Transaction Output) is a unit of cryptocurrency from a previous transaction that remains unspent and serves as input for new transactions in blockchains like Bitcoin.

Read full definition
WalletElectrum

Electrum is a lightweight Bitcoin wallet that allows users to store, send, and receive Bitcoin securely. It is known for its speed and low resource usage.

Read full definition
GeneralAltcoin

An altcoin is any cryptocurrency other than Bitcoin.

Read full definition
HardwareTrezor

Trezor is a hardware wallet by SatoshiLabs. It stores private keys offline to secure cryptocurrencies.

Read full definition
Review History — Initial review published — Rating and data updated Ratings recalculate automatically when wallet specs change.

Risk Assessment

Risk Score: 97/100

Low Risk
Connectivity Risks

Bluetooth connectivity risks

Bluetooth increases wireless attack surface Learn more →

Warning

Similar Wallets

Based on specifications, price, and ratings

FeatureFoundation Passport PrimeLedger StaxCoinkite Coldcard QNgrave Zero
Price$349$399$259.99$398
Open Source
Bluetooth
Air-Gapped
Security Rating72/10089/10094/10073/100
Usability Rating74/10074/10056/10071/100

Frequently Asked Questions

What if Foundation Passport Prime gets hacked?
Foundation Passport Prime uses a certified Secure Element chip to store private keys in tamper-resistant hardware. Even if the device's software were compromised, the Secure Element isolates your keys from extraction. The firmware is open-source, meaning security researchers worldwide can audit the code for vulnerabilities. The device has been independently security audited.
What if Foundation goes out of business?
Foundation's firmware is open-source — even if the company disappears, the community can maintain the software. Your seed phrase works with any BIP39-compatible wallet, so your funds are always recoverable.
What if I lose my Foundation Passport Prime?
Your cryptocurrency is stored on the blockchain, not on the device. If you lose your Foundation Passport Prime, you can recover full access using your seed phrase on any compatible wallet. Foundation Passport Prime also supports Shamir Secret Sharing, letting you split your backup across multiple secure locations.
How long will Foundation Passport Prime receive security updates?
Check Foundation's website for the latest firmware update schedule.
What is KeyOS on the Passport Prime?

KeyOS is a Rust microkernel operating system that isolates each application and turns the Prime into a programmable security platform — running a Bitcoin wallet alongside FIDO2 security keys, TOTP/2FA and a 50 GB encrypted file vault.

How is the seed backed up?

By default the seed is split into a 2-of-3 Shamir (SLIP-39) scheme stored on three tamper-evident NFC Keycards, so any two cards restore the wallet. Standard BIP-39 import/export and a passphrase are also supported.

Does the Passport Prime support altcoins?

Its first-party app is Bitcoin-only (with multisig and descriptor export). Altcoins are only available through third-party KeyOS apps such as Cake Wallet, not the native wallet.

Some links on this page are affiliate links. If you purchase through them, I may earn a commission at no additional cost to you. This helps support the site and allows me to continue creating detailed, independent reviews.

Our testing methodology is evolving. Ratings and assessments will be refined as we improve our scoring framework to reflect the most accurate results.

Ready to get Foundation Passport Prime?

Official website • Secure Element • Security audited • Bluetooth • NFC • Open source

View Best Price

Affiliate link — we may earn a commission at no extra cost to you. Learn more about our affiliate policy