Verified Participant Reviews
Our workshops and architectural key reviews have helped decentralized development teams, infrastructure engineers, and family offices eliminate hazardous single points of failure in their cryptographic custody pipelines. Below are direct accounts from recent session participants.
“Restructured our 3-of-5 multi-sig quorum with zero downtime”
Lead Infrastructure Architect, Decentralized Liquidity Protocol (Singapore)
“We engaged the Chiang Mai team to evaluate our validator withdrawal key storage and multi-sig treasury structure. Dr. Arnon identified a subtle vulnerability in our derivation path documentation where two signers had inadvertently generated keys from the same root seed structure. The 3.5-hour workshop gave our four keyholders clear, step-by-step procedures to rotate into fully distinct air-gapped hardware devices without disrupting active validator operations.”
“Essential practical cleanroom simulation for our new engineers”
Engineering Director, Cross-Chain Analytics Suite (Bangkok / Remote)
“The disaster recovery simulation forced our junior systems engineers to manually reconstruct a testnet 3-of-5 Shamir shard set using raw terminal commands in a disconnected Linux cleanroom. It revealed that our internal wiki instructions had three missing dependency steps. My only critique is that the pre-workshop reading syllabus was quite dense and took our team several evenings to digest beforehand, but the actual lab exercise went smoothly.”
“Concrete hardware hardening advice rather than generic theory”
Operations Lead, Independent Staking Cluster (Sydney, Australia)
“Most security consultants hand you high-level checklists about password complexity. In contrast, Somchai walked our team through exact systemd service configurations for remote signer daemons, demonstrated USB bus isolation techniques on Ubuntu server instances, and helped us configure optical QR airgap workflows on our Keystone devices. The resulting runbook is now mandatory reading for all our infrastructure staff.”
“Clarified our air-gapped seed backup procedures”
Co-Founder, Web3 Education Guild (Chiang Mai, Thailand)
“Attending the in-person workshop at the Chiang Mai research facility was illuminating. Seeing the physical stamping of stainless steel backup plates and testing chemical corrosion resistance in their lab gave our founders complete clarity on why paper backups fail in tropical environments. We immediately replaced our temporary paper sheets with 316-grade steel plates across all vault locations.”
Detailed Case Study: Multi-Jurisdictional Treasury Key Migration
Client Context & Challenge
In late 2023, a regional decentralized foundation with six core contributors spread across Thailand, Singapore, and Australia managed protocol governance through a fragile key arrangement. Multiple signers were utilizing browser-based software wallets stored on primary laptops used for daily web browsing, exposing the organization to significant malware and phishing risk.
Engagement Execution
The foundation scheduled our Flagship: Key Custody Architecture Review & Workshop. Over two intensive remote sessions:
- Threat Surface Audit: We cataloged each signer’s local computing environment, browser extension risks, and backup physical security.
- Standardization of Hardware Profiles: All six contributors were transitioned to uniform hardware security tokens utilizing optical QR airgaps, ensuring private keys never interact with USB ports on connected laptops.
- Threshold Reconfiguration: The governance contract was upgraded from an informal 2-of-3 software arrangement to a robust 4-of-6 multi-sig quorum.
- Emergency Runbook Delivery: A 22-page disaster recovery manual was generated, detailing exact protocols for signer incapacitation, key replacement ceremonies, and hardware token loss.
Verifiable Outcome
The team executed a flawless on-chain key migration on testnet before deploying to production. The organization has operated for over 18 months under the new governance framework with zero credential security incidents.
