Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

Already on GitHub? Sign in to your account

Add a lower severity disclaimer for wallets in-between software wallets and web wallets. #227

Merged
merged 1 commit into from Aug 16, 2013

Conversation

Projects
None yet
2 participants
Contributor

saivann commented Aug 16, 2013

This disclaimer is meant to allow visitors to be better informed of the difference between fully open-source and decentralized wallets and those who partially depends on centralized and opaque services.

Applies to hybrid wallets (blockchain.info)
Applies to clients that are loading the block chain using a centralized server (Electrum, Mycelium)

Concerning blockchain.info, if anyone still feel it should have the big red warning, I'm OK with that too. However my personal opinion is that this disclaimer is better suited given that it explicitely recommends using strong passwords and backups, and since we are linking and recommending the Android app and browser extension.

Screenshot:

capture du 2013-08-16 03 05 10

Contributor

luke-jr commented Aug 16, 2013

It's not a good idea to equate closed-source with uses-centralized-services.

Closed source is a much higher security risk, and I'm inclined to suggest we not list such clients at all.

Contributor

saivann commented Aug 16, 2013

By definition, a centralized server is a closed-source model as we can't really see what's happening under the cover. This is what I really meant to say here.

That said, I can just drop the part about "open-source" in the text as follow. FWIW, I would also be pretty uncomfortable with the idea of adding a closed source client on bitcoin.org .

"This wallet relies on a centralized service by default or is not fully open-source and requires a certain level of trust on a third party. This third party however does not control your wallet. Using backups and a strong password is always recommended when applicable."

Add a lower severity disclaimer for wallets in-between software walle…
…ts and web wallets.

Applies to hybrid wallet (blockchain.info)
Applies to clients that are loading the block-chain using a centralized server (Electrum)

saivann added a commit that referenced this pull request Aug 16, 2013

Merge pull request #227 from bitcoin/hybriddisclaimer
Add a lower severity disclaimer for wallets in-between software wallets and web wallets.

@saivann saivann merged commit 8b7dc73 into master Aug 16, 2013

@saivann saivann deleted the hybriddisclaimer branch Aug 16, 2013

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment