Oddbean new post about | logout
 The user-side upgrade process verifies that the firmware checksums match.

The actual cryptographic verification (i.e. "this firmware is official")  is done by the Coldcard bootloader during the install process, since you should never trust the computer anyway.