{"type":"rich","version":"1.0","title":"waxwing wrote","author_name":"waxwing (npub1va…knuu7)","author_url":"https://yabu.me/npub1vadcfln4ugt2h9ruwsuwu5vu5am4xaka7pw6m7axy79aqyhp6u5q9knuu7","provider_name":"njump","provider_url":"https://yabu.me","html":"We all (who have tech skills) are at least a little bit at fault.\n\nWe never developed some kind of norm of: how can you assure your users that their private keys are 'proper'?\n\nWere they supposed to look at them? No.\n\nIf you grab your randomness from the OS, you can't know, via testing, that the result will be random for a *user*, who is using a different machine than you. But why don't they have a simple push button test to check by sampling?\n\nObviously it's a bit harder with HWW but same principle.\n\nActually I'm genuinely curious what people think about that."}
