Excellent question. In my thinking, you can look at the contents of the files on the card before putting into your coldcard. And also before you put back into your computer. The main attack I think you'd want to guard against is having your private key(s) transferred to your networked computer.
Hey, NVK (npub1az9…m8y8) can you comment?