@Rotisserie Bastard you cannot really. the bootloader only runs coinkite signed firmware and it is checked against the secure element pairing, so unsigned code just will not boot. the one repurpose that still works is keeping it as one key in a multisig, where a compromised device on its own cannot move anything.