Damus
WalletScrutiny profile picture
WalletScrutiny
@WalletScrutiny

Know your wallet like you made it!

Our goal is to improve the security of Bitcoin wallets by examining products for transparency and potential attacks.

Relays (11)
  • wss://nostr-pub.wellorder.net/ – read & write
  • wss://relay.damus.io/ – read & write
  • wss://nostr-pub.semisol.dev/ – read & write
  • wss://nostr.oxtr.dev/ – read & write
  • wss://nos.lol/ – read & write
  • wss://relay.plebstr.com/ – read & write
  • wss://nostr.mutinywallet.com/ – write
  • wss://relay.primal.net/ – read & write
  • wss://nostr.wine/ – read & write
  • wss://nostr.bitcoiner.social/ – read & write
  • wss://relay.exit.pub/ – read & write

Recent Notes

Jameson Lopp · 3w
If Casa had access to mobile keys then it would make us a custodian, which we're quite careful to avoid becoming since our business isn't set up for it nor do we KYC clients. Casa open sourcing the a...
WalletScrutiny profile picture
"Coldcard being open source didn't prevent keys from being stolen" fails on the premise. Coldcard has not been Open Source since 2020. OSI defines the term. MIT plus Commons Clause is not Open Source. Coinkite dropped GPLv3 deliberately, to stop commercial forks, and their own marketing retreated to "verifiable" after much fighting.

You know well, the March 2021 commit that purged the last GPL code replaced battle-tested Trezor crypto libraries with a novel in-house library. Seed generation changed in that same commit. Escaping FOSS obligations and introducing the flaw were the same act.

And who found it, five years later? Not Coinkite. Outsiders reading public source, quite possibly with LLM assistance. That cuts both ways and it's the part that should get Casa listening. Models are getting good at finding bugs in binaries, too. Black hats already analyze your closed source app. Publishing source doesn't hand them anything they can't increasingly get themselves. It's the white hats, who won't touch proprietary code for legal and practical reasons, that closed source locks out. Security through obscurity now selects for the adversary.
24❤️2👍1💯1🤙1
Jameson Lopp · 3w
Open source vs source viewable is irrelevant in this context: the point is that publishing code by no means guarantees that vulnerabilities will be found in a timely manner. In the context of Casa, which only generates and stores the mobile key, a malicious app could be deployed to steal keys pract...
COLDIRON OS · 3w
Separate three things: source-available, audited, verifiable. Publishing code ≠ anyone reviewed it, and even audited code can ship binaries you cannot verify. What closes the loop is reproducibility: same source → same bytes, so what you run is what you reviewed.
pistachio3 · 3w
nostr:nprofile1qqsfzm94lura8dguaalkk6ml23umzqqmgqwqaqj43ms6yfgycl2s0jgpremhxue69uhkummnw3ez6ur4vgh8wetvd3hhyer9wghxuet59uq32amnwvaz7tmwdaehgu3wdau8gu3wv3jhvtcexe22d can you guys do an updated review of nostr:npub1fr0styg50xrcq9hs27wkm43kd56h6nr4lln746m304vfxadqganslul2sa I believe they have more ava...
R · 10w
If you one click installed your node, you should have just used the default node Sparrow, Blockstream, Bull, etc wallets use. Education is never free 🤷‍♂️😎
WalletScrutiny profile picture
BIP110 is heading towards "mandatory signalling" around August 7th with so far 3‰ miner support. How should we deal with this?

Bitcoin isn't a democracy. My node, my rules. To say "miners decide" misses how bitcoin works.

So ... at what point should we warn users about transactions executing on two blockchains? Bip110 users will see "0 confirmations" on their transactions long after they confirmed on the Core side.

But do Core users also need a warning? When and how? Clearly if bip110 would get close to 20% mining support, things would get dicey but now ...
63❤️1
R · 10w
It’s all been said, all that’s left is to let people make their choice and watch it play out.
nostrich · 10w
Play stupid games...
Judge Hardcase · 9w
If Bip110 threatens dominance, the vast majority of users probably wouldn't notice the change. For those Core users who have specialized uses for what Bip110 prohibits, it's probably best to just rely on the providers of the specialized software that offer those specialized uses to warn their users...
WalletScrutiny profile picture
We went eagerly to work to analyze this fancy new version of the Bitkey. Sadly our verdict is "no source" as the firmware *cannot be built from the source provided* as one *closed source dependency* is not included in their source code.

In theory they could remedy this in a firmware update.

22❤️3:amy:1👀1👍1👎1😱1
Neo ⚡️ · 18w
I tried to zap you a few times but it keeps failing. Maybe check ✌️
Big Sloth · 18w
nostr:nprofile1qqsztgse9h8nfsa7xf5c3dwfl9p249ncnzvazk6egynq9p22su37n6qpzemhxue69uhhyetvv9ujuurjd9kkzmpwdejhgqg4waehxw309aekvu3s9ehx7um5wgcjucm0d5knjv72 what say you!
Bitkey · 19w
Meet the new Bitkey. No seed phrase. Multisig by default. Built-in inheritance. And now, with 100% more screen. See what's new: https://bitkey.world/blog/meet-the-new-bitkey https://blossom.prima...
WalletScrutiny profile picture
The text contradicts the video ;) 100% more is twice as much than before, right? Anyway, lack of a screen was the deal breaker for us on the initial Bitkey, putting it into the verdict "no interface to approve transactions". With a screen that should not be the case anymore.

https://walletscrutiny.com/hardware/blockhww/
❤️1
WalletScrutiny profile picture
Playing with new features is fun. This one required to review 1300 products for a list of 27 features which LLMs can do in an hour citing sources. How do you like it? Should we put it live?



1🔥1
WalletScrutiny profile picture

WalletScrutiny turned 6!

We've come a long way over the years. In the beginning, we only looked into Android wallets - 40 of them - and now we've grown to more than 6000 products across many platforms. Your favorite hardware wallet? We got you covered. Desktop? Probably, too. And desktop is a lot of work as here we found many open source and reproducible products!
1❤️41🔥1
WalletScrutiny profile picture
We’ve been busy but quiet these last months. @btc_remnant improved the site a lot by adding new features around #nostr based build verifications.

We hope other projects in the nostr ecosystem like @franzap @Zapstore will see the value of these verifications and start integrating them. The more products that build on reproducibility, the more users can truly apply the principle of “Don’t trust - verify.” Binary transparency shouldn’t remain a niche feature - it needs to become the default.

If you run software that touches your private keys - be it nostr clients or bitcoin wallets - without binary transparency, only whoever built the binary really knows what code you’re running.



@dannybuntu and @keraliss checked the reproducibility of almost 300 binaries. The 304 verifications by @WalletScrutiny Bot are all the old verifications we had migrated to nostr. And the backlog keeps growing as we cover more and more products with frequent updates.

Are we doing something valuable for the space? A @Spiral grant says yes, and community endorsements confirm it - but the project itself also needs scrutiny.

We recently introduced "verification endorsements":



This is a simple contribution many could provide. If you read a verification and it looked plausible and complete and you trust the author, mark the verification as verified. If you ran the documented commands yourself on your hardware and got to similar results, please endorse the verification!

Even more importantly label verifications as invalid and leave a comment about what's missing when you find issues! Don't be shy!

Our goal is to document all steps such that all mildly technical users (you should be comfortable with a Linux shell) can reproduce our findings. If that's not the case, please provide your feedback and we will improve ✋.

And if you maintain one of the products we check, share your own verification as a template for others!
38❤️6👀2❤️1👏1🚀1🤙1
Zapstore · 52w
Great work guys. Looking forward to the integration!
Chiefmonkey · 52w
Woohoo nostr:nprofile1qqsq8dgrdhpahqnqgvrur9jd9wfxg9afrsa3rmm4hfk225qeaxm6v2spzamhxue69uhhyetvv9ujuurjd9kkzmpwdejhgtcpzemhxue69uhkummnw3ezuurjd9kh5tn0wfnj7p6k0xn killing it… my man 👌
Rizful.com (zap tester) · 52w
testing zaps for this note… we made six attempts to⚡zap this note, at [email protected], over a period of 1 minute. in each case, we found that your lightning address server did not respond correctly. (the failure point was when we did a get request to your specified callback url: https:...
Big Barry Bitcoin · 83w
Ah, sorry I misread, I thought maybe it was an incomplete note actually 😅 I'd stick with attestators. Most likely this will be an icon for most people, like a badge... Badge good. For the rest of us who get curious, using the accurate words is gonna be important, even if we have to google to fi...
WalletScrutiny profile picture
English speakers please help us out here ...

We are close to launching "attestations" where anybody will be able to attest to the reproducibility of binaries. The process is technical and quite involved. Are those who do this ...

* Attestators
* Wittnesses
* Verifiers
* Certifiers

#askNostr
31❤️3
Big Barry Bitcoin · 83w
What do you need?