@Suiseiseki
> an attacker can [...] dump out all blocks.
not a concnern
> You're better of encrypting the cards with LUKS2
that misses the point.
I need an untrusted computer to be able to read the content of the card, without being able to modify it.
Also, can you stop being patronizing?
Not everyone has the same threat model as you, not everyone is trying to solve the same problem as you, and if LUKS was the answer I would've figured that out myself.