bitcoindevkit / bitcoindevkit/bdk-cli

NUMS_UNSPENDABLE_KEY_HEX is not supposed to be used as is (privacy concerns)

Open
#218 5 comments 0 reactions 1 assignee Claimed by @vadim-anfv View on GitHub
enhancement
Dominant language
Rust
Stars
141
Forks
99
Avg merge
6d 14m
Merged PRs (30d)
1

Description

I believe technically the `NUMS_UNSPENDABLE_KEY_HEX` is not supposed to be used as is (privacy concerns), though for now it's fine. Per [BIP-0431](https://github.com/bitcoin/bips/blob/master/bip-0341.mediawiki#constructing-and-spending-taproot-outputs), should add an issue to do the following:

"In order to avoid leaking the information that key path spending is not possible it is recommended to pick a fresh integer r in the range 0...n-1 uniformly at random and use H + rG as internal key. It is possible to prove that this internal key does not have a known discrete logarithm with respect to G by revealing r to a verifier who can then reconstruct how the internal key was created."

_Originally posted by @notmandatory in https://github.com/bitcoindevkit/bdk-cli/pull/208#discussion_r2330503782_

Contributor guide

Open the contributing guide

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.