Thanks, although that's not really what I wanted to ask. You are right, but I never mentioned keeping a backup on a device that has access to the internet.
You literally said this:
...and 1 internet-exposed device.
Hello. I may have been misunderstood, but as I said, I don't have a digital backup of my seed phrase. However, it is obvious that since I use a hot wallet, my private key exists on my device, somewhere inside my Bluewallet's app storage. But, my backups are not digital. I think, and maybe I am wrong, that it is much more risky to have a picture of your seed phrase or a text file inside your smartphone, than having imported the seed phrase into an application that uses a specific location to store the keys. Again, it is obvious that if someone could hack my keys they would steal everything from me. But as far as backups are concerned, the only thing I wanted to say was that I don't have a digital copy of them.
A few points to consider.
In your current set up, you obviously have two back ups of each single sig wallet's seed phrase, because if you only had one back up and you lost it, then your wallet is unrecoverable. This is not the case with a multi-sig wallet. Even if you only had one back up of each seed phrase, then you can lose a single back up and still recover your wallet with the other two back ups. If you think your main weakness is one or more of your back ups being discovered, then you could reduce the number of back ups from six to three. You would have less redundancy, but you still would not have a single point of failure.
Alternatively, you could use a 3-of-5 system, again with a single back up of each seed phrase. This would require five back ups instead of six, but would require an attacker to access three of them instead of two of them in order to steal your coins. It would also allow you to lose up to two of your back ups and still recover your wallet.
It mostly depends on how secure your storage locations are against theft and against loss, and finding the balance between security against theft and redundancy against loss. Only you can answer that for your particular situation.
The option for the 3-of-5 is very appealing. Thanks for the suggestion. Obviously this is exactly what I wanted. I wanted an idea or an option from someone more experienced than me.
It's a good idea to use a multi-signature wallet if you worry about your seed phrase being stolen.
Just note that if you lose the seed phrase A, seed phrases B and C won't be enough for recovering the wallet. You will need the master public key derived from the seed phrase A as well.
I have a general question that is not clear to me. Let's say at some point that I want to recover my funds and I have nothing but the 3 of the 5 seed phrases. If I used them, importing the seed phrases to a software wallet, wouldn't that be enough? Wouldn't I be able to recover my funds, simply knowing the 3 seed phrases and nothing else? Or would I still need to know the xpub of the other 2?
I am asking because if that's the case, then except for the 5 seed phrases I also need to know all of the 5 xpubs.