what i fear most is that the initial key isn't random enough (but that is also the case with any private key generation let it be core, some offline java generators etc.) and if that kind of problem is discovered at any point in the future it allows to steal your coins no matter how far you went to protect your own copy of a key

other than that i trust trezor enough to have some coins there for every month use
Trezor has the capability to use an alternative entropy source when generating the private key. Not sure whether you can literally seed it yourself (using a physical entropy source), but it can definitely take entropy from the machine/OS you're using the Trezor with.