What I say is simple: do not have Ledger Wallet installed on your PC; use Electrum or another wallet to access Ledger; and never do this type of configuration.
This is clear for anyone who wants to continue using their HW Ledger.
It's impossible to use ledger wallet without ever using ledger crap app.
First you need this crap app to install and update device firmware, so you need to install and use it minimum one time or more.
There is no way around to generate new ledger account with electrum or any other third party wallet if you have new ledger device.
Clear! What I said is for those who have an old Ledger and who are not going to do a reset now. This is no longer recommended.
How safe is that against a thief who steals your Ledger and uses "Recover" to extract your seed phrase from the "secure" element?
They need to have physical access your device first, than anything is possible.
If they can't extract it, maybe they can sign up for Recover instead of owner

You had to have some access data, such as a PIN, to validate enrollment in this recovery program. And if you have the PIN, it doesn't make sense for the thief to sign up for this program.
Well, at least that's what they say.

We all have to go back to the famous paper or metal sheet, so we don't have these types of worries.
