We all (who have tech skills) are at least a little bit at f...

675b84fe75e216ab...
npub1vadcfln4ugt2h9ruwsuwu5vu5am4xaka7pw6m7axy79aqyhp6u5q9knuu7
hex
677ecf6a66765f08a06f9a668928a2d5ce91a1cd453dfc378967170ad201dbcanevent
nevent1qqsxwlk0dfn8vhcg5phe5e5f9z3dtn5358x5200ux7ykw9c26gqahjsprpmhxue69uhhyetvv9ujuem4d36kwatvw5hx6mm9qgsxwkuyle67y94tj378gw8w2xw2wa6nwmwlqhddlwnz0z7sztsaw2qmzl07mKind-1 (TextNote)
We all (who have tech skills) are at least a little bit at fault.
We never developed some kind of norm of: how can you assure your users that their private keys are 'proper'?
Were they supposed to look at them? No.
If you grab your randomness from the OS, you can't know, via testing, that the result will be random for a user, who is using a different machine than you. But why don't they have a simple push button test to check by sampling?
Obviously it's a bit harder with HWW but same principle.
Actually I'm genuinely curious what people think about that.
原始 JSON
{
"kind": 1,
"id": "677ecf6a66765f08a06f9a668928a2d5ce91a1cd453dfc378967170ad201dbca",
"pubkey": "675b84fe75e216ab947c7438ee519ca7775376ddf05dadfba6278bd012e1d728",
"created_at": 1785637597,
"tags": [
[
"alt",
"A short note: We all (who have tech skills) are at least a littl..."
],
[
"client",
"Amethyst"
]
],
"content": "We all (who have tech skills) are at least a little bit at fault.\n\nWe never developed some kind of norm of: how can you assure your users that their private keys are 'proper'?\n\nWere they supposed to look at them? No.\n\nIf you grab your randomness from the OS, you can't know, via testing, that the result will be random for a *user*, who is using a different machine than you. But why don't they have a simple push button test to check by sampling?\n\nObviously it's a bit harder with HWW but same principle.\n\nActually I'm genuinely curious what people think about that.",
"sig": "bf97aa897c99fc2f1366166938e44b0f27158ef875075138e67f1ec0996d9d7316e64c4f049952f68ac60f96e09770046d24d965dcda01848669de279b596f4f"
}