Seedsigner seems decent.
A verified AGC with keys to sign also seems good too.
The question is how much work are you willing to put in to create the entropy and the memory gap?
Rolling dice (even/odd) or coins for 256 bits, hashing your own checksum, verifying the xpub/zpub and entropy takes 1.5-2 hours of work for a single key. Could be faster if you can optimize the calcs of words and input of your 256 bits, etc.