I don't really understand the process by which private keys can be extracted from the Ledger device--do you have to be using Ledger Live for that to happen? What if you have to update the bitcoin app?
The problem here is that we were told by Ledger that it was impossible to extract seed from Ledger Wallet because Ledger devices protect your private key with a Secure Element chip. Then, out of nowhere, a new hardware update comes that allows Ledger Recover to access private keys. So, they were telling us that something like that was impossible but one day they come and say: It's possible only if you manually approve. So, that means, they have been lying since the very first day that means maybe our seeds are already extracted and stored somewhere on their servers, who knows? I am not so naive to believe that this seed extraction process 100% depends if I allow Ledger to do it or not, especially when they are closed source.