Skip to content

docs(zcash): clarify ZcashDisplayAddress verification scope#25

Merged
BitHighlander merged 1 commit into
masterfrom
fix/zcash-display-address-docs
Mar 25, 2026
Merged

docs(zcash): clarify ZcashDisplayAddress verification scope#25
BitHighlander merged 1 commit into
masterfrom
fix/zcash-display-address-docs

Conversation

@BitHighlander
Copy link
Copy Markdown
Owner

Summary

  • Clarify that device only verifies Orchard FVK, not transparent/Sapling receivers
  • Document that account or address_n is required (no silent fallback to 0)
  • Explicitly state the guarantee: "This UA contains an Orchard receiver from this account"

Addresses security review finding #1 (overstated verification claim).

The device only verifies the Orchard FVK — it cannot verify
transparent or Sapling receivers that may also be bundled in
a Unified Address. Updated proto comments to explicitly state
the guarantee: "This UA contains an Orchard receiver from this
account" rather than implying full address ownership.

Also clarified that account or address_n is required (no silent
fallback to account 0).
@BitHighlander BitHighlander merged commit 74e0648 into master Mar 25, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant