Ledger and Hardened Derivation Paths: what changed and what It means for your vault
Ledger is moving to hardened derivation paths which is a stricter, more isolated way of generating keys. Casa now supports hardened purpose paths, and migration is available and optional.
TL;DR
- Nothing changes automatically for your existing Ledger setup. Your vault continues to work normally.
- Ledger is moving toward enforcing hardened derivation paths — a more secure way of generating keys.
- Casa now supports hardened purpose paths (the first level of the derivation path). Migration is available today and is optional, not required.
- If you'd like to migrate, see our step-by-step guide: How to Migrate Your Ledger Key to a Hardened Derivation Path.
Background: How Your Ledger Generates Keys
Your Ledger device stores a seed phrase — a master secret from which all of your keys are generated. It does this using a system called hierarchical deterministic (HD) derivation, which follows a standardized path structure:
m / purpose' / coin_type' / account' / change / address_index
From that seed, the device produces extended public keys (xPubs). An xPub lets Casa's servers generate your receiving addresses and monitor your vault without ever touching your private keys — keeping them safely on your device.
What's the Difference Between Hardened and Unhardened Derivation?
Until now, Casa used unhardened derivation paths for Ledger keys. This approach let our servers take a single xPub and derive child keys for different accounts and purposes without needing your device to reconnect each time.
Hardened derivation works differently: each branch of the key tree is isolated, so a child key cannot be derived from a parent xPub alone. The device itself must be involved.
Ledger is pushing toward hardened derivation because their users often secure many different cryptocurrencies with a single seed phrase. In that context, a leaked private key combined with an unhardened path could potentially expose other assets on the same seed.
For Casa members, this risk is much lower — we're a multisig wallet supporting a limited number of assets — but we're aligning with Ledger's direction to maintain compatibility and keep your setup future-proof.
Why Existing Keys Can't Simply Be "Converted"
Casa currently holds xPubs derived from unhardened paths, and there's no way to convert them to hardened ones on our end. Hardened derivation requires direct involvement of your device and seed.
To migrate to a hardened key, you would:
- Connect your Ledger device
- Export a new hardened-path xPub
- Complete a standard key rotation to insert it into your vault
This is a straightforward process — and again, it's not required right now.
What This Means for You Today
Your vault is secure and fully functional as-is. No immediate action is required.
If Ledger enforces stricter firmware requirements in the future (for example, phasing out support for older firmware versions), you would still be able to sign transactions using the Bitcoin Recovery app rather than the standard Bitcoin app. Your seed and vault structure would remain completely intact.
Casa now supports hardened purpose paths, so migration is available today. You have several options:
- Stay with your current setup — no change required
- Rotate to a hardened Ledger key — a straightforward key rotation when you're ready
- Rotate to a different hardware device — if you'd prefer to switch manufacturers
- Load your seed onto a different device — without needing a key rotation at all
If you'd like to migrate, our guide walks you through the full process: How to Migrate Your Ledger Key to a Hardened Derivation Path. If you're not sure whether it makes sense for your setup, reach out to help@team.casa anytime.
Additional Resources:
Questions?
If you'd like to review your specific vault setup or go deeper on any of the technical details above, our team is happy to help. Reach out to help@team.casa anytime.