Advanced
Dan Romero@dwr
5/16/2023

The Ledger feature is good, actually?

In reply to @dwr
buidlpreneur@scottrepreneur
5/16/2023

You dropped this šŸŒ¶ļø

In reply to @dwr
Anders@anders
5/16/2023

Why do you think is good? just the existence of seed phrase sharing functionality, even if encrypted, significantly expands the potential of a hack

In reply to @dwr
sean šŸ„@seanhart
5/16/2023

is the debate about the destination they arrived at or the route they took?

In reply to @dwr
5/16/2023

thats what i saidā€¦ itā€™s fireblocks for retail... except 100x cheaper apparently there is some technical nuance though where ledger firmware updates can potentially leak the entire seed phrase, not just ledgerā€™s shard

In reply to @dwr
Tayyab@tayyab
5/16/2023

I appreciate that it's not default, and opt-in. I, also, don't think we are going to run away from centralization in Web3, it'll just happen in different places/angles. Though, I'd appreciate it not being ID Verification (as someone who has worked in the industry), ID Theft is real and unsolved. Needs a diff solution

In reply to @dwr
Chu Ka-Cheong@kc
5/16/2023

I think a bigger problem is Ledgerā€™s lack of communication. There is no technical documents nor detailed recovery procedures for public review. And I donā€™t understand why they choose real ID-based over social recovery. But I think improving recovery process is a welcomed feature if you want crypto to be mainstream.

In reply to @dwr
Ken Yie@kenyiexyz
5/16/2023

Depends on your perspective? If the point of buying the device was to store the keys and never allow them off of the device by any sort of 3rd party, it's not good to learn at all there is firmware that allows the keys to be read off of the device.

In reply to @dwr
~ L ~ RARA@lwsnbaker
5/16/2023

Itā€™s not a secure enclave if keys can be exported to another device.

In reply to @dwr
julien@julien
5/16/2023

yes, univocably

In reply to @dwr
JonnyRingo.eth āš°ļø@jonnyringo
5/16/2023

I think offering a third-party custody service was just a bit off-key for them is the issue. Good feature, bad execution.

In reply to @dwr
j3@j3
5/16/2023

Key is encrypted on element. No issues there. Would love for them to release workflow video to see how it works backed with some technicals for the paranoid I'd be raising alarm bells if they're able to pull the key WITHOUT Hardware confirmation

In reply to @dwr
Afi@afi
5/16/2023

What's the ledger feature?

In reply to @dwr
GabrielAyuso.eth āŒā—Ø-ā—Ø@gabrielayuso
5/16/2023

Recovery mechanisms are a must in order for more people to adopt crypto and hardware wallets. Ledger wants to scale to bring HW to more people and this is part of it. If enough customers aren't happy, this is an opportunity for an alternative HW maker to step in knowing that their market will remain small.

In reply to @dwr
Andrii Orap@aorap
5/16/2023

šŸ¤”šŸ¤”šŸ¤” ledger fans šŸ¤”šŸ¤”šŸ¤”

In reply to @dwr
Mirs (amir motlagh)@mirs
5/16/2023

agree, but on a different device

In reply to @dwr
Daniel LombraƱa@teleyinex
5/16/2023

The execution of sharing the story is terrible. Reading here and there I think that they split the recovery phrase in 3 pieces encrypted within the ledger. Then they send it to different players. You need KYC to request a recovery and then use the original ledger to decrypt it.

In reply to @dwr
Ustas@ustas
5/16/2023

It is good if the implementation is well done. I'm ok with that only if it doesn't affect regular wallets in any possible way.

In reply to @dwr
Timi šŸŠ@timigod
5/16/2023

Yes. But I donā€™t want it. I donā€™t want it to even be *possible* on my hardware wallets. And I canā€™t imagine most people like me not deciding to just use another wallet that doesnā€™t have such a problem.

In reply to @dwr
5/16/2023

Is this feature necesary on a hardware wallet? If your gunna send fragments of your wallet around to different companies, why spend money on hardware, just make a software wallet with this feature.

In reply to @dwr
Aaron Ho@aho
5/16/2023

They should launch a different product with that feature instead, have it isolated so if it becomes an attack vector it's only on those new "social" devices.

In reply to @dwr
Ryan Anderson@ra
5/17/2023

Lotta NIMBYs on crypto twitter today.

In reply to @dwr
5/17/2023

I was making this argument to (crypto) people yesterday. It fell on deaf ears

In reply to @dwr
5/17/2023

Kinda worried.

In reply to @dwr
Karthik Senthil@karthiksenthil
5/17/2023

I think so, just poorly communicated. Maxis and maxis for a reason, so its a bit of fake outrage.

In reply to @dwr
Chu Ka-Cheong@kc
5/18/2023

I have some second thoughts on the issue. It may be more problematic than I initially thought https://paragraph.xyz/@kc/on-ledger-recover

In reply to @dwr
thebestwallet@thebestwallet
5/19/2023

not really. while this is better than paper is has many issues 1. kyc gating (easy to game) 2. privacy killer (kyc) 3. possible risk of 2 party coercion 4. paid scheme that kills access of 7 days overdraft 5. apparently possible to recover the seed from any device as long as KYC is passed. no additional sec.