RT @EFF: This bill could put encryption providers like WhatsApp and Signal in an awful conundrum: either face the possibility of losing eve…

Sun Mar 01 10:07:22 +0000 2020


State-izen 👎😡 “conclusion of a National Citizens Registry (NRC) in the northeastern state of Assam resulted in some 2M people, mostly Muslims, being stripped of Indian citizenship after failing to produce sufficient documents to prove their nationality” http://on.theatln.tc/2PmQsth

Sun Mar 01 10:21:52 +0000 2020


Replying to @trbouma and @DigitalNations

Is there a section that limits overuse of identity authentication? Like GDPR has for personal data “no more than the minimum for business purpose” I’d like to see the same for authentication. Otherwise we risk have biometrics & hardware & citizen auth become the only auth.

Sun Mar 01 18:44:02 +0000 2020


RT @ChristopherA: @trbouma @DigitalNations Is there a section that limits overuse of identity authentication? Like GDPR has for personal da…

Sun Mar 01 18:54:01 +0000 2020


RT @janschakowsky: I just gave @SecAzar THREE chances to assure us that any #coronavirus vaccines or treatments developed with U.S. taxpaye…

Sun Mar 01 19:00:39 +0000 2020


RT @MsMelChen: I’m not confident in the US’s ability to deal with COVID-19.

How can we expect normal citizens to be responsible and to c…

Sun Mar 01 19:03:03 +0000 2020


Replying to @misterchambo and @MsMelChen

Unfortunately there no place else to currently get the test other than hospitals. And we are in flu season still so many people will have symptoms but will not be able to get properly tested for COVID-19.

Sun Mar 01 23:15:44 +0000 2020


Replying to @Steve_Lockstep, @trbouma and @DigitalNations

There were discussions in the Netherlands that there may be a race to anything other than eiDAS L4 being eventually required for everything. Anything else “can’t be trusted”. This is too high security for most identity authentication purposes—risks personal data & correlation.

Sun Mar 01 23:20:47 +0000 2020


Replying to @Steve_Lockstep, @trbouma and @DigitalNations

I’ve found it very hard to communicate effectively the principal of least privilege. It feels obvious to me but it competes against the “more is better” meme which is fits better with fear-based modality that is in the marketing sold by much of the security industry.

Mon Mar 02 04:21:27 +0000 2020


RT @ChristopherA: @Steve_Lockstep @trbouma @DigitalNations I’ve found it very hard to communicate effectively the principal of least privil…

Mon Mar 02 04:24:05 +0000 2020


Replying to @Steve_Lockstep, @trbouma and @DigitalNations

I wrote about this some in 2004(!) after the #RSAConference 16 years ago in “The Bad Business of Fear”. Much is still true today of the security industry! (Incidentally this is the post where I brought up that I wanted to develop #SmartContract technology) http://www.lifewithalacrity.com/2004/02/security_crypto.html

Mon Mar 02 04:31:44 +0000 2020


RT @ChristopherA: @Steve_Lockstep @trbouma @DigitalNations I wrote about this some in 2004(!) after the #RSAConference 16 years ago in “The…

Mon Mar 02 04:31:56 +0000 2020


Replying to @richardamurray, @matthew_d_green and @Natanael_L

Nothing today is quite as good as Blackboard was at its height. Zoom with Google Docs comes closest if you use desktop and turn on a bunch of features. Some examples of how I used it starts on slide 59 of “My Hybrid Flipped Learning Environment” https://www.slideshare.net/ChristopherA/my-hybrid-flipped-learning-environment

Mon Mar 02 04:38:28 +0000 2020


RT @ChristopherA: @richardamurray @matthew_d_green @Natanael_L Nothing today is quite as good as Blackboard was at its height. Zoom with Go…

Mon Mar 02 04:39:03 +0000 2020


Replying to @Steve_Lockstep, @trbouma and @DigitalNations

I think we have to repeat it over and over at every level from bottom to top. Otherwise it gets lost in the noise or competes with prevailing meme of “more is better”. More auth must be more secure, right? That is what is being sold.

Mon Mar 02 04:41:44 +0000 2020


Replying to @richardamurray, @matthew_d_green and @Natanael_L

I also use similar design principles in F2F design workshops I have been hosting for the past few years: https://github.com/WebOfTrustInfo/rwot11-netherlands/blob/master/topics-and-advance-readings/rwot-primer.md Now that the next event is cancelled due to COVID-19, we are considering a virtual event to replace it. So I’m also looking at platforms right now too.

Mon Mar 02 04:48:32 +0000 2020


RT @ChristopherA: @richardamurray @matthew_d_green @Natanael_L I also use similar design principles in F2F design workshops I have been hos…

Mon Mar 02 04:48:38 +0000 2020


RT @Steve_Lockstep: @ChristopherA @trbouma @DigitalNations IMO LOAs are a fundamentally bad idea. They pigeon-hole risk, totally at odds wi…

Mon Mar 02 04:53:43 +0000 2020


RT @kimdhamilton: I recently complained to a colleague that the effectiveness of de-identification techniques is woefully under-explored in…

Mon Mar 02 08:18:32 +0000 2020


RT @kimdhamilton: and damn if that colleague didn’t write one of the very few papers on the effectiveness of de-identification techniques a…

Mon Mar 02 08:18:44 +0000 2020


RT @Steve_Lockstep: @kimdhamilton If a Patent Examiner ever comes across a claim of “perpetual motion” or its equivalent in a patent applic…

Mon Mar 02 08:18:49 +0000 2020


RT @ortegaalfredo: This is the complete DNA of the Coronavirus (SARS-CoV-2). We are being attacked by a 8 kilobytes virus. Remember this wh…

Mon Mar 02 08:22:03 +0000 2020


RT @anildash: Google’s decision to kill Google Reader was a turning point in enabling media to be manipulated by misinformation campaigns.…

Mon Mar 02 17:40:31 +0000 2020


RT @SSI_Ambassador: Where are we heading regarding online #identity? In my latest article I dive into the aspects of personal freedom and g…

Tue Mar 03 01:08:22 +0000 2020


My @MeeplesTogether co-author @Appelcline writes about lessons learned playing a co-op solo “Though Meeples Together sometimes speaks derogatorily of the “hivemind”, where one player can take over a group, there’s also a real wonder in everyone coming together.” https://twitter.com/MeeplesTogether/status/1234591161114718208

Tue Mar 03 03:25:37 +0000 2020


RT @trbouma: Going from traditional #PKI to #SSI

Wed Mar 04 15:34:11 +0000 2020


I appreciate the desire to help people to move to self-custody, but moving from Coinbase to any single signature mobile wallet for more than play amounts of Bitcoin is not a good idea. Furthermore, then encouraging BIP39 passphrase is I’ll advised as these are error prone. https://twitter.com/stephanlivera/status/1234992882492178432

Wed Mar 04 15:40:53 +0000 2020


For play amounts of money, I’d focus 1st on security of the 12 words without a passphrase. Have them write it on waterproof paper with a permanent marker. Then delete the wallet. Download a different one. Show them how these words restore their funds. Much deeper understanding.

Wed Mar 04 15:46:22 +0000 2020


For more significant funds, take a look at our free #SmartCustody PDF on “the care, maintenance, control, and protection of digital assets”. Has Detailed checklists to ensure that you don’t lose your Bitcoin. Available free from @BlockchainComns at http://bit.ly/SmartCustodyBookV101

Wed Mar 04 15:47:26 +0000 2020


Replying to @ChrisLundkvist

It is the optional 13th or 25th word. There is no error correction on it, and my research shows it is a large source of loss of funds, typically due to errors of sending funds to a typo. And it add negligible security — very little entropy, else you have also write them down.

Wed Mar 04 15:58:55 +0000 2020


Replying to @OurielOhayon and @ChrisLundkvist

(😡 iOS autocorrect c/I’ll/ill in first of this thread)

Wed Mar 04 16:01:48 +0000 2020


Replying to @maxtannahill and @BlockchainComns

We can make multisig recovery easier. @BlockchainComns is building @FullyNoded 2 as open source reference wallet to help explore how to make make multisig easier while making it more secure and more resilient. But still more learning to be done.

Wed Mar 04 16:06:23 +0000 2020


Replying to @maxtannahill, @BlockchainComns and @FullyNoded

Encrypted backups often are a phantom. You still have to backup the encryption key, which in many cases then makes the whole system only as secure as it was before the encryption, but now the system is more brittle. It can be useful in some cases but is very hard to design well.

Wed Mar 04 16:09:51 +0000 2020


Replying to @ChrisLundkvist

Yes, the 12 or 24 word approach in BIP39 is good. I do wish the word set was better. We did research on this and some of our suggestions were incorporated in the #SLIP39 mnemonic set (20 words per Shamir shard). No homonyms, Damerau-Levenshtein distance of 2, nd more.

Wed Mar 04 16:16:04 +0000 2020


RT @unchainedcap: “For those securing a material amount of wealth, single points of failure in single signature wallets present an unaccept…

Thu Mar 05 11:47:40 +0000 2020


RT @matthew_d_green: This bill, if it becomes law, will be the most significant erosion of the individual right to communicate privately th…

Fri Mar 06 01:47:48 +0000 2020


Replying to @GLEIF and @isostandards

So how can legitimate members of the identity development community get a hold of this draft without being an ISO member?

Fri Mar 06 01:55:33 +0000 2020


I have learned a huge amount over the years about facilitating & growing online communities from @hrheingold. He has been incredibly generous with his knowledge before it was fashionable. This article distills his decades of best practices using currently available online tools. https://twitter.com/hrheingold/status/1235694845462601730

Fri Mar 06 14:46:08 +0000 2020


This is the project from 2014 that both led me to into more serious development work with Bitcoin and also is my root inspiration for DIDs before we had the first #RebootingWebOfTrust in 2015. This basic technique is still used today to revoke & rotate the BTCR method for DIDs. https://twitter.com/randw/status/1236147606268436481

Sat Mar 07 18:23:01 +0000 2020


RT @Tykn_tech: In celebration of the upcoming International Women’s Day, we highlight 8 Women in Identity that continuously inspire us with…

Sat Mar 07 21:48:40 +0000 2020


👍👏 https://twitter.com/La__Cuen/status/1236392929155059713

Sun Mar 08 00:07:26 +0000 2020


I will be speaking this Friday in Buenos Aires at #BitcoinAR Meetup on #SmartCustody, the future of digital wallets, self-sovereign key recovery vs transaction recovery using multisig, and social recovery approaches. https://twitter.com/BitcoinAR/status/1236662874153631747

Sun Mar 08 19:35:03 +0000 2020


Mon Mar 09 18:33:58 +0000 2020


Quote is the Bene Gesserit “Litany Against Fear” from Dune by Frank Herbert. https://en.wikipedia.org/wiki/Bene_Gesserit#Litany_against_fear Images are from various influenza health sites circa 2009. Mashup source unknown.

Mon Mar 09 18:34:34 +0000 2020


Replying to @VinayTaylor and @threader_app

I’m not sure the thread reader compiled it correctly. This is an old tweet before tweet storm conventions were formalized.

Mon Mar 09 23:09:51 +0000 2020


Replying to @threadreaderapp

unroll

Mon Mar 09 23:22:05 +0000 2020


Replying to @threadreaderapp and @VinayTaylor

It looks like threadreaderapp does a better job.

Tue Mar 10 11:11:34 +0000 2020


@marktippin are there options for non-profits that host events? Mural pricing is not suitable for hosting the recently cancelled #RWOT collaborative design workshop or future workshops, or other ad how collaborative groups. cc @davegray who know my past work

Wed Mar 11 15:49:25 +0000 2020


RT @MeeplesTogether: A case study on one of Shannon’s favorites: The Dresden Files Cooperative Card Game. https://www.meeplestogether.com/2020/03/11/case-study-the-dresden-files-cooperative-card-game/

Thu Mar 12 01:36:48 +0000 2020


RT @udiWertheimer: @Leishman @SFBitcoinDevs 1/ thanks to everyone who mentioned me here :)

We’re running a virtual reality socratic semi…

Thu Mar 12 22:35:57 +0000 2020


Replying to @evanwolf, @udiWertheimer, @Leishman, @SFBitcoinDevs, @michaelfolkson and @ecurrencyhodler

Only if you pissed off the hoi polloi.

Thu Mar 12 23:34:46 +0000 2020


RT @FullyNoded: To be clear this app would not be possible if it weren’t for @BlockchainComns, they also have many other exciting projects…

Fri Mar 13 18:41:18 +0000 2020


RT @FullyNoded: Hey Bitcoiner’s! Did you know you can support open sourced software that makes Bitcoin easier to use in a self sovereign/se…

Fri Mar 13 18:41:22 +0000 2020


#Argentina is banning flights from US next week due to #covid, but in many cases this means that that flights TO Argentina are being cancelled. Last day to leave is Monday else 30+ days. Now waiting for @AmericanAir to officially cancel so we get can get booked on new flight!😡

Fri Mar 13 20:49:37 +0000 2020


Since there has been no evidence of community spread here in #Argentina yet, we had thought we’d finish our full trip here. Social distancing measures have begun—museums, sports, etc. But my planning scenarios did not include that Argentina would be the one to block travel to US.

Fri Mar 13 20:53:47 +0000 2020


My talk in Buenos Aires, Argentina on #SmartCustody (in English) at #BitcoinAR will be lived-streamed in 10-15m or so at https://www.facebook.com/bitcoinargentina https://twitter.com/BitcoinAR/status/1236662874153631747

Fri Mar 13 21:56:16 +0000 2020


Replying to @BitcoinAR

Thanks #BitcoinAR and Buenos Aires for being so welcoming to me. If you missed the talk, the slides are at https://docs.google.com/presentation/d/1NW2ieGhBeS2ziiDjnnUgBwapSZLufZwjJz5_l9DNTEE and the video archive is at https://www.facebook.com/bitcoinargentina/videos/676053226533208/

Sat Mar 14 00:58:09 +0000 2020


RT @ChristopherA: @BitcoinAR Thanks #BitcoinAR and Buenos Aires for being so welcoming to me. If you missed the talk, the slides are at htt…

Sat Mar 14 00:58:20 +0000 2020


It looks like we have been re-ticketed on the last American flight back to US from Argentina, via Miami, for Monday evening. Should be back at SFO on Tuesday, and then off to home to hibernate.

Sat Mar 14 01:36:32 +0000 2020


Right now @BlockchainComns does not recommend using bitcoind’s tor capability with v2, but instead do your own v3 hidden service. Our #BitcoinStandup app & scripts can help you do this. HOWEVER, we are seeking advice for @torproject & the bitcoin-core community on best practices. https://twitter.com/FullyNoded/status/1232257504794431488

Sat Mar 14 01:59:40 +0000 2020


RT @JustMeTurtle: I’m a garbageman, I can’t work from home and my job is an essential city service that must get done. It’s a tough job, fr…

Sun Mar 15 16:29:56 +0000 2020


RT @schwentker: @CBRStanford @blockchainU @naglaw @alexandrag2254 @ariannagolf .@blockchainU graduates & teachers @ChristopherA (https://t.…

Sun Mar 15 17:00:55 +0000 2020


Just ran into this: 👍“Sovereignty is the capacity to take responsibility. It is the ability to be present to the world and to respond to the world — rather than to be overwhelmed or merely reactive. Sovereignty is to be a conscious agent.”— @jgreenhall https://link.medium.com/NUlk6VTCS4

Mon Mar 16 12:11:09 +0000 2020


“Members of Congress have mounted a major threat to your freedom of speech and security online. The so-called EARN IT Act (S. 3398) is anti-speech, anti-security, anti-innovation, and unnecessary. Let’s tell Congress to reject it.” @EFF https://act.eff.org/action/protect-our-speech-and-security-online-reject-the-graham-blumenthal-bill

Mon Mar 16 12:48:19 +0000 2020


Replying to @MAMK, @amigus, @JacobBoers and @jgreenhall

To me agency feels less than sovereignty. I use agency a lot in game design—it makes you feel you can try or speak. Remember, at one point in history sovereignty was reserved chiefs & kings. It evolved to move to nations but also to heads of households. Now everyone can have it.

Mon Mar 16 18:00:36 +0000 2020


👍Agreed! This is why I wrote @MeeplesTogether: “poker is all adversarial. It’s not a game of mutual shared interest…The signals you’re sending…(are) genuine signalling for mutual benefit…There’s a better card game metaphor for venture capital: bridge.”
https://alexdanco.com/2020/02/28/vcs-should-play-bridge/

Mon Mar 16 19:26:21 +0000 2020


Replying to @omarchvz8

Hola! Ya tenemos entradas confirmadas para esta noche. ¿Qué tan llenas estaban las líneas? ¿Necesitamos llegar más temprano? Gracias!

Mon Mar 16 19:45:27 +0000 2020


Replying to @MAMK, @amigus, @JacobBoers, @jgreenhall and @mamk

Could I get any relevant links to internal relations theory perspective on what sovereignty means? I feel historically the world renegotiates what sovereignty means and who gets it every century or so, and we are in the middle of the one for this century.

Mon Mar 16 19:48:11 +0000 2020


I need a bookkeeper to puzzle with me & learn how to use the various plain text accounting command line tools (ledger, hledger, etc) to do fiat, Bitcoin & cryptocurrency accounting. Will require learning some command line & some basic git. Great at home “social isolation” task!

Mon Mar 16 19:54:59 +0000 2020


RT @SSIMeetup: Internet cryptography and Self-sovereign identity (SSI) pioneer @ChristopherA will talk the 20th of March at @SSIMeetup in c…

Tue Mar 17 12:59:22 +0000 2020


Replying to @jacksenechal

So far hledger seems best at tracking bitcoin amounts, but it is unclear if it does cost-bast profits on transactions correctly to fiat. Also, if you mix 10 digit precision Bitcoin with 2 digit fiat, the fiat becomes 10 digit. Experimenting with denomination in satoshi.

Tue Mar 17 13:03:51 +0000 2020


Replying to @1stCrassCitizen

We’ve made it through the most worrying parts — flew the last American flight out of Argentina & have passed through Miami immigration & customs. Now only domestic to LAX then San Francisco.

Tue Mar 17 14:24:49 +0000 2020


“the techniques of surveillance available to the contemporary state, starkly evident in China today, can only further restrict human rights and liberties. …though undoubtedly welcome in the short term, it should be feared in the long run.” https://twitter.com/opinion/status/1239950607764590594

Tue Mar 17 21:29:39 +0000 2020


Though there is a legitimate need in the common welfare to have epidemiologist’s know the facts on the ground. But this information should be anonymized—I don’t believe that personal surveillance should be allowed even in this crisis situation. https://twitter.com/mir_btc/status/1240572614294282240

Thu Mar 19 19:14:41 +0000 2020


🤔“Americans…just want to tap those digits on the desk until quitting time. This bureaucratic docility is the domesticated, shadow side of American frontiersmanship. It will steer us further toward compliance than we might have believed possible.” https://www.theatlantic.com/technology/archive/2020/03/coronavirus-police-state-america/608365/

Thu Mar 19 22:47:19 +0000 2020


“It makes me feel incredibly hopeful that this crisis is going to help us rediscover our community connections, our capacity for mutual support and our generosity, all in ways we can’t yet begin to imagine.” https://twitter.com/awsamuel/status/1240734160076959744

Fri Mar 20 16:13:59 +0000 2020


This post is a somewhat chaotic but ongoing list of various “mutual aid” groups working together to address various local needs caused by Covid-19 & social distancing. https://symbioticfund.wordpress.com/2020/03/19/the-biggest-covid-19-story-nobody-is-talking-about/

Fri Mar 20 16:23:03 +0000 2020


Replying to @joiflores

I have a lot of experience creating collaborative apps, but have been focused lately in the sub-task of how to address privacy, censorship resistance & decentralization for such collaborations. I’m puzzling on how our DID work in progress can be integrated to help other teams.

Fri Mar 20 16:46:40 +0000 2020


Replying to @awsamuel

Do you have a link on how another area can fork your project to start one for their area?

Fri Mar 20 16:53:41 +0000 2020


RT @ChristopherA: Join the Dutch Self-Sovereign Identity community in a #Foremembrance for those who died by attempting to bomb the civil a…

Fri Mar 20 21:17:28 +0000 2020


RT @awsamuel: @ChristopherA The @coda_hq is getting a template setup that will be ready next week. Email info@vancouversupport.ca and we’ll…

Fri Mar 20 21:17:47 +0000 2020


RT @SSIMeetup: @BitcoinAR @ChristopherA @AlianzaBlock Here you go video+slides of one of the most important webinars we have done so far. P…

Sat Mar 21 02:03:25 +0000 2020


RT @SSIMeetup: Join the Dutch Identity community in a #Foremembrance for those who died attempting to bomb the civil archives captured by t…

Sun Mar 22 23:30:30 +0000 2020


RT @trbouma: Phenomenal #SSI @SSIMeetup presentation by @ChristopherA. Honoured to be cited for #LessID and moved by the historical context…

Sun Mar 22 23:31:01 +0000 2020


Replying to @yslcrypto, @SSIMeetup, @BitcoinAR and @AlianzaBlock

https://github.com/WebOfTrustInfo/self-sovereign-identity/blob/master/self-sovereign-identity-principles.md - PRs with suggestions to update the principals (one principle each at a time) are suggested for discussions toward a future release of a 2020 version of the Self-Sovereign Identity Principles. If you don’t know how to do PRs (many don’t) we will help.

Sun Mar 22 23:45:24 +0000 2020


RT @ChristopherA: @yslcrypto @SSIMeetup @BitcoinAR @AlianzaBlock https://github.com/WebOfTrustInfo/self-sovereign-identity/blob/master/self-sovereign-identity-principles.md - PRs with suggestions to update the principals (o…

Sun Mar 22 23:45:49 +0000 2020


RT @nodl_it: 0.0.8 - upgrade (nodl Dojo)

  • Introduced change log for releases
  • QRCode for fully noded tor access
  • bitcoind 0.19.1
  • RTL 0…

Mon Mar 23 08:25:28 +0000 2020


Effectively GDMR is a form of Self-Sovereign Architecture if all the keys are solely in user’s hands. https://t.co/OinEpcPs0c

Mon Mar 23 08:37:47 +0000 2020


Best video I’ve seen of proper hand washing technique yet…

Mon Mar 23 08:50:36 +0000 2020


“If corps and govs start harvesting our biometric data en masse, they can…know us far better than we know ourselves and…then not just predict our feelings but also manipulate our feelings and sell us anything they want—be it a product or a politician.” https://www.ft.com/content/19d90308-6858-11ea-a3c9-1fe6fedcca75

Mon Mar 23 09:37:14 +0000 2020


#TraceTogether #bluetrace from the Singapore GovTech aspires to allow for collection of data on your phone of nearby phones, such that if you are infected with #COVID19 you can notify contacts. It also claims to do this in a privacy preserving way. Anyone looked at privacy code? https://twitter.com/GovTechSG/status/1240956007263559681

Mon Mar 23 13:51:08 +0000 2020


Replying to @m3untold

Issues of biometrics vs privacy, anonymity & correlation resistance, for use in both identification and collective health data has been an ongoing topic in the #SSI community (for instance see https://github.com/WebOfTrustInfo/rwot6-santabarbara/blob/master/draft-documents/Biometrics.md)) however I believe it have been underfunded. Still hopeful!

Mon Mar 23 14:03:48 +0000 2020


RT @ChristopherA: @m3untold Issues of biometrics vs privacy, anonymity & correlation resistance, for use in both identification and collec…

Mon Mar 23 14:03:58 +0000 2020


This is all I’ve found to date: “collection & logging of encounter/proximity data between devices…is done in a peer-to-peer, decentralised fashion, to preserve privacy…the epidemic control guidance is done centrally by a trusted public health authority” https://bluetrace.io/

Mon Mar 23 14:09:28 +0000 2020


@govtechsg, this is an important topic, but is there any source code available to review? Description of your protocol? Review of your security architecture? Papers and code that influenced your design decisions?

Mon Mar 23 14:13:09 +0000 2020


RT @ChristopherA: This is all I’ve found to date: “collection & logging of encounter/proximity data between devices…is done in a peer-to-pe…

Mon Mar 23 14:13:26 +0000 2020


RT @ChristopherA: @govtechsg, this is an important topic, but is there any source code available to review? Description of your protocol? R…

Mon Mar 23 14:13:36 +0000 2020


Replying to @kanzure, @BobMcElrath and @MarkFriedenbach

Blockchain Commons is in the process of refactoring the different parts of SLIP39 into a number of separate C libraries. This will allow for further security review, a number different use cases, and for future work like support of musig VSS.

Mon Mar 23 14:21:09 +0000 2020


Replying to @kanzure, @BobMcElrath and @MarkFriedenbach

In my opinion SLIP39 suffers from a lack of a good overall architecture for recovery (including social & transactional recovery approaches), but is a useful tool in our toolbox. Our current C implementations of SLIP39 will be thrown out soon, but is at https://github.com/BlockchainCommons/sss/blob/master/README_slip39.md

Mon Mar 23 14:28:03 +0000 2020


Replying to @BobMcElrath, @kanzure, @MarkFriedenbach and @BobMcElrath

Take a look at our code again when we are done with the refactoring. You’ll be able to pick and choose some of the desirable features, but keep the core Shamir code strong. It will also allow for alternative approaches. I think it will help.

Mon Mar 23 15:03:44 +0000 2020


Replying to @BobMcElrath, @kanzure and @MarkFriedenbach

Blockchain Commons is funded solely by our patrons. If you like this recovery tools project or our other projects such as Bitcoin Standup, FullyNoded2, #SmartCustody, our support of Tor exit nodes, or our lobbying for better legislation on private keys see https://GitHub.com/sponsors/BlockchainCommons

Mon Mar 23 15:09:04 +0000 2020


In addition to Singapore’s #BlueTrace there is also MIT’s #SafePaths http://safepaths.mit.edu/ — any other worthy privacy & human rights protecting health apps & tools, in particular for low hanging fruit like contact tracing & verification of immunity? https://twitter.com/hdevalence/status/1242192708724125696

Tue Mar 24 00:30:30 +0000 2020


#SafePaths https://twitter.com/vitorpamplona/status/1242223794649018368?s=21 https://twitter.com/vitorpamplona/status/1242223794649018368

Tue Mar 24 00:33:03 +0000 2020


Replying to @peterktodd

It looks governments are going to demand this, so we ought to at least come up with best practices that help the cause, offer the least risk, are more difficult to misuse, is transparent, and has data that does not persist for a long time or is only useful for a limited time.

Tue Mar 24 05:28:55 +0000 2020


Replying to @effie409

Several of us have tried to find the source of the video. I don’t know.

Tue Mar 24 07:44:38 +0000 2020


Replying to @theinstagibbs

I’m still uncomfortable with solely using computer hardware (whether on secure elements or on quarantined devices). I appreciate @CasaHODL & @unchainedcap approaches to using transactional recovery and collaborative custody techniques, but personal favorite solution is 2 of 4…

Tue Mar 24 17:10:04 +0000 2020


Replying to @theinstagibbs, @CasaHODL and @unchainedcap

My 2 of 4 proposal would have 2 keys on secure or quarantined devices (for instance @FullyNoded @Ledger @Trezor @COLDCARDwallet). One would be entirely offline on titanium. The last would be in collaborative custody like @CasaHODL or @unchainedcap. Will doc in next #SmartCustody.

Tue Mar 24 17:16:22 +0000 2020


RT @ChristopherA: @theinstagibbs I’m still uncomfortable with solely using computer hardware (whether on secure elements or on quarantined…

Tue Mar 24 17:17:13 +0000 2020


RT @ChristopherA: @theinstagibbs @CasaHODL @unchainedcap My 2 of 4 proposal would have 2 keys on secure or quarantined devices (for instanc…

Tue Mar 24 17:17:20 +0000 2020


Replying to @hodlwave, @theinstagibbs, @CasaHODL, @unchainedcap, @FullyNoded, @Ledger, @Trezor and @COLDCARDwallet

Take a look at public alpha of @FullyNoded for iOS https://testflight.apple.com/join/OQHyL0a8 — default wallet format is 2 of 3 native-segwit PSBT with one seed on phone in secure element, 1000 keys on full-node, and last seed entirely offline. But goal is to support any bitcoind wallet descriptor.

Tue Mar 24 17:26:49 +0000 2020


Replying to @hodlwave, @theinstagibbs, @CasaHODL, @unchainedcap, @FullyNoded, @Ledger, @Trezor and @COLDCARDwallet

I’d love to see a Glacier-like approach that uses some of the underpinnings that @FullyNoded 2 app is experimenting with. Leverage the QuickConnect QR to a Tor v3 full-node, use a standard airgap QR code for signing, use watch-only wallet on phone to generate pubkeys, etc.

Tue Mar 24 17:32:03 +0000 2020


Replying to @theinstagibbs, @esneider, @CasaHODL and @unchainedcap

Sig + timelock-sig is one of the wallet types that is on the roadmap for the @FullyNoded 2 wallet app. There are also some other interesting approaches. For instance there are some interesting social key recovery properties of a 4 of 9 under a timelock. Miniscript helps a lot!

Tue Mar 24 18:17:14 +0000 2020


Replying to @theinstagibbs, @esneider, @CasaHODL and @unchainedcap

Risk modeling is a must! Have you looked through our free #SmartCustody book!? It details not only one scenario, but it explains how you create risk models, do adversarial analysis on them, and how to make decisions balance the process fatigue over risk. http://bit.ly/SmartCustodyBookV101

Tue Mar 24 18:21:48 +0000 2020


Replying to @hodlwave, @theinstagibbs, @CasaHODL, @unchainedcap, @FullyNoded, @Ledger, @Trezor and @COLDCARDwallet

Our goal at @BlockchainComns with @FullyNoded 2, BitcoinStandup, #SmartCustody, etc. is to influence other wallet developers with functional proof of concepts and test beds, improve best practices, and develop standards together to preserve self-sovereign digital assets.

Tue Mar 24 18:27:40 +0000 2020


Replying to @CasaHODL, @theinstagibbs, @esneider and @unchainedcap

We at @BlockchainComns would be glad to work with @CasaHODL to publish an independent risk model report on your architecture, do a operational security review of your internal processes, or even do code reviews. As a community we need more transparency and public reporting.

Tue Mar 24 18:32:41 +0000 2020


RT @luminoir: “TraceTogether: under the hood” by Frank L. https://link.medium.com/LzoJP5mD64

Tue Mar 24 19:22:41 +0000 2020


RT @zerotypic: Okay, so I’ve been taking a look at #TraceTogether over the weekend, to see what I could find. This is still very preliminar…

Tue Mar 24 19:22:57 +0000 2020


Replying to @rhizo_michael, @theinstagibbs, @CasaHODL and @unchainedcap

I somewhat distrust personal hardware in the hands of non-operations people. I’ve had my own hardware keys go bad—could have been static, humidity, salty air, bad cables, etc. #BitRot not EMP. In a 2 of 4, I can agree to Casa style not archiving seeds for the 2 at home, and…

Tue Mar 24 22:07:02 +0000 2020


Replying to @rhizo_michael, @theinstagibbs, @CasaHODL and @unchainedcap

…I can be persuaded that the operational security & resilience of a professional cooperative custody custodian like @CasaHODL or @unchainedcap is sufficient. So only one, entirely offline seed, properly locked away by the hodler, makes for a more secure & resilient strategy.

Tue Mar 24 22:11:41 +0000 2020


RT @ChristopherA: @rhizo_michael @theinstagibbs @CasaHODL @unchainedcap I somewhat distrust personal hardware in the hands of non-operation…

Tue Mar 24 22:16:31 +0000 2020


RT @ChristopherA: @rhizo_michael @theinstagibbs @CasaHODL @unchainedcap …I can be persuaded that the operational security & resilience of a…

Tue Mar 24 22:16:34 +0000 2020


I’m looking for a good name for a project hosted by @BlockchainComns for an open source DYI hardware box for various offline cryptographic tools & utilities. Key generation, derivation, etc. Ideally name evokes that this device is entirely offline and has no persistent storage.

Tue Mar 24 23:31:32 +0000 2020


Replying to @elc1959, @BlockchainComns and @satoshilabs

Trezor requires usb connection to a device that has network access. This box only has QR for airgap.

Wed Mar 25 00:08:32 +0000 2020


Replying to @CasaHODL, @rhizo_michael, @theinstagibbs and @unchainedcap

Device health checks are definitely part of a good risk model, but also a new attack surface that I’ve not sufficiently analyzed using our risk modeling approach. Casa 3 of 5 is plausible, but I need to dive into researching it.

Wed Mar 25 00:12:59 +0000 2020


I’ve been advocating about the legitimate need for aggregating health data but also that we need to put a lot more care into privacy. Here is an example of aggregation that is useful (but can’t speak to if data collected was sufficiently anonymized): https://www.unacast.com/covid19/social-distancing-scoreboard

Wed Mar 25 01:17:26 +0000 2020


This Friday we will have a moment of silence, a #Foremembrance, to salute those all those who died to protect the defenceless in WWII, and those on the forefront today doing the same. Join me at 19:06 CET, 11:06 am PDT https://ssimeetup.org/how-avoid-another-identity-tragedy-with-ssi-christopher-allen-webinar-53/ and a talk after for the full story.

Wed Mar 25 17:36:17 +0000 2020


Please note that this week Europe in NOT on Daylight Time and the US is. https://www.timeanddate.com/worldclock/fixedtime.html?msg=%23Forrembrance&iso=20200327T1906&p1=16&ah=1

Wed Mar 25 17:43:35 +0000 2020


For a preview on why we are having that moment of silence this Friday, see this presentation https://docs.google.com/presentation/d/1lO6vik7UkXQEhAWtVsaF3Bn_KUAUhZsTflTPjeF3aSw — we will also be talking as an example of this topic about legitimate needs for community health data vs. the risks to location privacy in the era post- #Covid19.

Wed Mar 25 18:11:32 +0000 2020


RT @ChristopherA: Please note that this week Europe in NOT on Daylight Time and the US is. https://www.timeanddate.com/worldclock/fixedtime.html?msg=%23Forrembrance&iso=20200327T1906&p1=16&ah=1

Wed Mar 25 18:12:05 +0000 2020


RT @ChristopherA: For a preview on why we are having that moment of silence this Friday, see this presentation https://docs.google.com/presentation/d/1lO6vik7UkXQEhAWtVsaF3Bn_KUAUhZsTflTPjeF3aSw — we…

Wed Mar 25 18:12:05 +0000 2020


Replying to @discipl_org

Also note that the EU has not switched to Summer time yet, but the US has. Thus the moment of silence is 19:06 CET and 2:06pm EDT and 11:06am PDT (and 2:06 am on Saturday in Taiwan & Hong Kong) https://www.timeanddate.com/worldclock/fixedtime.html?msg=%23Forrembrance&iso=20200327T1906&p1=16&ah=1

Wed Mar 25 18:18:04 +0000 2020


Some more on the topic of location privacy in an era of #Covid19, this time EU Commission asking telcoms turn over data and accept liability for GDPR fines (/ht @Andrew_Mooijman) https://www.politico.eu/article/european-commission-mobile-phone-data-thierry-breton-coronavirus-covid19/

Wed Mar 25 18:30:29 +0000 2020


RT @ChristopherA: Some more on the topic of location privacy in an era of #Covid19, this time EU Commission asking telcoms turn over data a…

Wed Mar 25 18:30:50 +0000 2020


Another EU link, about how strong rules around location privacy can be overridden through emergency legislation. (/ht @riichard) https://edpb.europa.eu/news/news/2020/statement-edpb-chair-processing-personal-data-context-covid-19-outbreak_en

Wed Mar 25 18:40:54 +0000 2020


Some thoughts by @zerotypic after diving into #TraceTogether #BlueTrace. He has concerns about obfuscation of code. “One of my original goals in taking a look at #TraceTogether was to get some assurance that it wasn’t doing anything odd.”

Wed Mar 25 19:36:44 +0000 2020


More diving into #TraceTogether #BlueTrace by Frank Liauw @frankvolkel “Although I didn’t manage to answer all the questions I set out with, I’ve validated the application sufficiently to trust it with confidence” https://medium.com/@frankvolkel/tracetogether-under-the-hood-7d5e509aeb5d

Wed Mar 25 19:42:04 +0000 2020


RT @ChristopherA: Another EU link, about how strong rules around location privacy can be overridden through emergency legislation. (/ht @ri…

Wed Mar 25 20:10:16 +0000 2020


Replying to @kallewoof

We’d really like to support multisig message signing in our @FullyNoded 2 #iOS app. Is there some reference C code for this (or Swift library) that we can use?

Wed Mar 25 21:16:34 +0000 2020


Over a decade ago I worked on a “Pseudoanonymous Ephemeral Locality” protocol and API that I had hoped could offer some obfuscation & privacy to cell phone #LocationPrivacy. I wasn’t able to get people interested then. From the archives here is the draft: https://github.com/ChristopherA/Ephemeral-Locality-API

Wed Mar 25 22:27:34 +0000 2020


RT @ChristopherA: Over a decade ago I worked on a “Pseudoanonymous Ephemeral Locality” protocol and API that I had hoped could offer some o…

Wed Mar 25 22:27:45 +0000 2020


Replying to @CarstenStoecker and @BlockchainComns

Not sure quite how to get QRNG without chip hardware support, but if we can find a commodity solution board with chips that offer real randomness, we’ll take advantage of it. On wish list for @BlockchainComns to be able to design custom silicon for secure apps (more than #RISCV).

Wed Mar 25 22:31:36 +0000 2020


https://twitter.com/gtank__/status/1242898816174604289?s=21 https://twitter.com/gtank__/status/1242898816174604289

Thu Mar 26 00:40:33 +0000 2020


👍👏“Players need to communicate their ideas clearly and effectively so that they are understood, acknowledged and challenged when necessary. They need to coordinate their plans to be most effective at slowing the spread of illness. More than anything, they need to cooperate” https://twitter.com/mattleacock/status/1242922257258815494

Thu Mar 26 00:58:54 +0000 2020


Replying to @kallewoof and @FullyNoded

We are using LibWally through LibWallySwift: https://github.com/BlockchainCommons/FullyNoded-2

Thu Mar 26 02:18:21 +0000 2020


Replying to @kallewoof and @FullyNoded

We can also leverage any existing RPC to bitcoind if needed, as we have an onion-secure connection to a full-node. This of course will be easy for us once bitcoind accepts, but we think this is an important future.

Thu Mar 26 02:19:52 +0000 2020


More examples of cell phone tracking technology. This one shows where those kids ignoring social distancing during the spring break at Miami Beach travelled off to. Watch to end — pretty remarkable! But imagine this tool in hands of the next McCarthy.🤔 https://twitter.com/mikaelthalen/status/1243281598037913600?s=21 https://twitter.com/MikaelThalen/status/1243281598037913600

Thu Mar 26 23:32:10 +0000 2020


RT @ChristopherA: More examples of cell phone tracking technology. This one shows where those kids ignoring social distancing during the sp…

Thu Mar 26 23:32:19 +0000 2020


For #PatentBreaking purposes, the idea was that you created a hilbert or some other fractal curve that represents every point on the surface of the earth, making at an integer list. Clients you can use zk range proofs for #LocationPrivacy. The servers also did some obfuscation.

Fri Mar 27 05:42:45 +0000 2020


RT @ChristopherA: For #PatentBreaking purposes, the idea was that you created a hilbert or some other fractal curve that represents every p…

Fri Mar 27 05:42:57 +0000 2020


The image above was from a hilbert curve cat image sewn from a single line on an automated sewing machine by @EvilMadZener. https://www.evilmadscientist.com/2016/hilbert-curve-cat/ But you can sort of image in your head a coastline of Asia in it 🤓. Suspect there are better fractal curves for this as well.

Fri Mar 27 05:46:53 +0000 2020


Here is a better image of the #LocationPrivacy concept, using an open source tool https://shooshx.github.io/Image2Hilbert/ This map is a very long line, which makes it great for use in things like range #zkproofs such as the efficient bulletproof techniques used by #Blockstream & #Monero.

Fri Mar 27 06:01:05 +0000 2020


RT @ChristopherA: Here is a better image of the #LocationPrivacy concept, using an open source tool https://shooshx.github.io/Image2Hilbert/ This map is a v…

Fri Mar 27 06:01:35 +0000 2020


Replying to @jiceman and @Andrew_Mooijman

I’ve read elsewhere that this wording is to force governments to pass emergency legislation so that the are not liable. My concern is temporary “emergency” powers have a way of staying around after their need is gone.

Fri Mar 27 06:24:01 +0000 2020


Today at 19:06 CET (sunset in Amsterdam) is the 77th Anniversary of the attempt by The Resistance to bomb the Dutch Civil Archives. Centralized data in the hands of the Nazis resulted in 75% of Dutch Jews dying! France only 23%. 12 men were executed. Join us in #Forembrance 😢

Fri Mar 27 07:07:25 +0000 2020


We will be holding a moment of of silence to salute those who fought against the misuse of identity data in the past & also #Foremembrance to the future, at sunset in Amsterdam at 7:06 pm CET, 2:06 pm EDT, 11:06 am PDT. Join us after for a discussion.

https://ssimeetup.org/how-avoid-another-identity-tragedy-with-ssi-christopher-allen-webinar-53/

Fri Mar 27 07:17:12 +0000 2020


“When authority became a threat, our government agencies failed as guardians of law and security…Now that the last survivors are still among us, I apologize today on behalf of the government for government action then.”—Netherlands Prime Minister Mark Rutte @MinPres 2020-01-26

Fri Mar 27 07:18:11 +0000 2020


Why was this apology so important? Because for over 75 years the Netherlands Government never acknowledged their role both before & after WWII why so many Dutch Jews died in the Holocaust. https://twitter.com/ostrov_a/status/1221453230326145026?s=21 https://twitter.com/Ostrov_A/status/1221453230326145026

Fri Mar 27 07:21:36 +0000 2020


Why did so many Jews, gays & other Nazi undesirables die from the Netherlands? Because the Dutch Civil Service was one of the best in the world, serving its citizens well during the Great Depression. But 75% of its Jews died due to this efficiency. https://www.annefrank.org/en/anne-frank/go-in-depth/netherlands-greatest-number-jewish-victims-western-europe/

Fri Mar 27 07:26:49 +0000 2020


Here are more details on this history of how centralized data was used against a minority. https://docs.google.com/presentation/d/1lO6vik7UkXQEhAWtVsaF3Bn_KUAUhZsTflTPjeF3aSw

Fri Mar 27 07:29:43 +0000 2020


But why is this relevant today? Governments today are taking legitimate emergency measures to track & manage #COVID19. One of the best tools is the GPS in our cell phones. We need to balance this public good vs. risks of loss of human rights in the future. We can do this!

Fri Mar 27 07:34:23 +0000 2020


Here is a thread where I’m tracking links to various projects and approaches that may allow for better public health options without huge risks to #LocationPrivacy. https://twitter.com/christophera/status/1242247381866831872?s=21 https://twitter.com/ChristopherA/status/1242247381866831872

Fri Mar 27 07:37:28 +0000 2020


We are also planning in our weekly W3C Credentials CG call next Tuesday at 12pm EDT 9am PDT to share & discuss more about these different approache. Also work on defining a set of technical requirements and best practices. Thus call is open to the public. https://W3C-CCG.github.io

Fri Mar 27 07:42:20 +0000 2020


RT @ChristopherA: We will be holding a moment of of silence to salute those who fought against the misuse of identity data in the past & al…

Fri Mar 27 15:52:26 +0000 2020


RT @ChristopherA: “When authority became a threat, our government agencies failed as guardians of law and security…Now that the last surviv…

Fri Mar 27 15:52:30 +0000 2020


RT @ChristopherA: Why was this apology so important? Because for over 75 years the Netherlands Government never acknowledged their role bot…

Fri Mar 27 15:52:33 +0000 2020


RT @ChristopherA: Why did so many Jews, gays & other Nazi undesirables die from the Netherlands? Because the Dutch Civil Service was one of…

Fri Mar 27 15:52:37 +0000 2020


RT @ChristopherA: Here are more details on this history of how centralized data was used against a minority. https://docs.google.com/presentation/d/1lO6vik7UkXQEhAWtVsaF3Bn_KUAUhZsTflTPjeF3aSw

Fri Mar 27 15:52:40 +0000 2020


RT @ChristopherA: But why is this relevant today? Governments today are taking legitimate emergency measures to track & manage #COVID19. O…

Fri Mar 27 15:52:45 +0000 2020


RT @ChristopherA: Here is a thread where I’m tracking links to various projects and approaches that may allow for better public health opti…

Fri Mar 27 15:52:48 +0000 2020


RT @ChristopherA: We are also planning in our weekly W3C Credentials CG call next Tuesday at 12pm EDT 9am PDT to share & discuss more about…

Fri Mar 27 15:52:52 +0000 2020


“One reason governments keep secret the procedures and powers by which they seize and make use of data is a concern that informed enemies would thus evade them. When it comes to public health, this is unconvincing.” — @TheEconomist https://www.economist.com/briefing/2020/03/26/countries-are-using-apps-and-data-networks-to-keep-tabs-on-the-pandemic

Fri Mar 27 16:23:57 +0000 2020


RT @ChristopherA: “One reason governments keep secret the procedures and powers by which they seize and make use of data is a concern that…

Fri Mar 27 16:24:08 +0000 2020


“any solution which relies on smartphones & internet access inherently ignores…(those who do) not have internet access…prefer to see the data wizards apply themselves to easier problems such as optimising the supply chains for medical goods like masks and ventilators.”

Fri Mar 27 16:31:37 +0000 2020


Replying to @gladstein

I’m absolutely sure they can deanonymize, especially with the support of phone companies and cell tower information. But there are countries and corporations that desire to be good actors and we can give them tools to make it less risky.

Fri Mar 27 17:01:43 +0000 2020


A moment of silence at 7:06pm Amsterdam to salute those who in the risked their lives or died to prevent centralized data and identity records from being used against those who are defenseless, and to #Foremember those on the front lines today.

Fri Mar 27 18:06:11 +0000 2020


More details in this thread of our #Foremembrance today… https://twitter.com/christophera/status/1243434431903219712?s=21 https://twitter.com/ChristopherA/status/1243434431903219712

Fri Mar 27 18:55:39 +0000 2020


RT @EFF: When cities demand granular location data on individual trips, they are no longer smart cities—they are surveillance cities. We ne…

Fri Mar 27 19:27:53 +0000 2020


“The local authorities making these demands are not balancing their planning goals with the privacy interests of residents who rely on these new modes of transportation. And they do not even seem to believe that individual level trip data is personal information. “ — @EFF https://twitter.com/EFF/status/1242179308006846467

Fri Mar 27 19:30:51 +0000 2020


A great #LocationPrivacy overview: “we provide below a brief explainer guide of the basics: (1) what is location data, (2) who holds it, and (3) how is it collected? Finally we discuss some preliminary ethical and privacy considerations for processing location data”—@stacygraydc https://twitter.com/staceygraydc/status/1242909647704555528

Fri Mar 27 19:35:32 +0000 2020


“In Canada, the disclosure of specific personal health information of individuals – or information that could lead to their identification – is an extreme measure that breaches basic personal health information protection requirements.” https://twitter.com/brankamarijan/status/1242650565097795584

Fri Mar 27 19:37:10 +0000 2020


The video for today’s #Foremembrance is now on YouTube at https://youtu.be/isanNSDoSnE

Fri Mar 27 19:44:29 +0000 2020


The W3C Credentials CG will meet next Tuesday 31st at 12pm EDT (9am PDT, 5pm BST, 6pm CEST) on the topic of #LocationPrivacy to offer an overview of existing projects, look at requirements & discuss further actions. Tech-focused but open to the public. https://lists.w3.org/Archives/Public/public-credentials/2020Mar/0091.html

Fri Mar 27 19:59:30 +0000 2020


Replying to @gladstein

It possible to create tracing tools that are consensual & anonymous, with incentives for all parties to cooperate. Whether we have the will to do so is a reasonable doubt. Certainly not in time for this crisis, but we can start. Meanwhile improve best practices & shame bad ones.

Fri Mar 27 20:29:24 +0000 2020


RT @ChristopherA: @gladstein It possible to create tracing tools that are consensual & anonymous, with incentives for all parties to cooper…

Fri Mar 27 20:29:29 +0000 2020


Replying to @gladstein

So far the government’s of Canada, the Netherlands and New Zealand appear to be leading the pack with the desire to do the right thing.

Fri Mar 27 21:18:37 +0000 2020


Replying to @Sheldrake and @ntnsndr

Agreed. I’ve always said that blockchain, combined with identity (even self-sovereign identity), is a two-edged sword which can be used for both beneficial & maleficent purposes. We must balance benefits for the common good vs risks to the defenseless. http://www.coindesk.com/11-times-speakers-stole-show-consensus-2016

Fri Mar 27 22:36:00 +0000 2020


RT @ChristopherA: @Sheldrake @ntnsndr Agreed. I’ve always said that blockchain, combined with identity (even self-sovereign identity), is a…

Fri Mar 27 22:36:23 +0000 2020


Another entry for contract tracing and #LocationPrivacy approaches (along with Singapore’s #BlueTrace and MIT’s #SafePath) is Israel’s #TheShield app (link is via google translate): https://translate.google.com/translate?sl=auto&tl=en&u=https%3A%2F%2Fwww.haaretz.co.il%2Fcaptain%2Fsoftware%2F1.8700078

Sat Mar 28 07:04:59 +0000 2020


RT @ChristopherA: Another entry for contract tracing and #LocationPrivacy approaches (along with Singapore’s #BlueTrace and MIT’s #SafePath…

Sat Mar 28 07:05:20 +0000 2020


RT @ScottLDavid: When the next generation asks for jubilee to relieve the debts WE bequeathed to them, they should reject (as fallacious)an…

Sat Mar 28 18:16:56 +0000 2020


I really like this community collaborative work #deckjam that is a cross between poetry, divination cards, and a story game, all created as a branching weave of tweets with two haiku-like contrasting offerings to inspire the next. https://twitter.com/roswellwrites/status/1240396310945169410

Sat Mar 28 18:35:06 +0000 2020


In addition to donations through our BTCPay server, you can financially support @BlockchainComns through personal monthly patronage via GitHub at $20 a month as an individual, as a startup at $100 a month? GitHub is matching first $5k. https://github.com/sponsors/BlockchainCommons https://twitter.com/B__T__C/status/1244078820556144640

Sun Mar 29 04:13:50 +0000 2020


Replying to @Sheldrake and @ntnsndr

This is from the 10 principles of self-sovereign identity, which is widely accepted in the #ssi community: http://www.lifewithalacrity.com/2016/04/the-path-to-self-soverereign-identity.html

Sun Mar 29 13:24:28 +0000 2020


Replying to @moskovich, @stevenmosher and @WHO

We will be talking about various implementations of #LocationPrivacy including contract tracing of #COVID19 at next Tuesday’s W3C-CCG open call noon EDT. Many useful links in the agenda invite email & its replies https://twitter.com/christophera/status/1243628736013979648?s=21 https://twitter.com/ChristopherA/status/1243628736013979648

Sun Mar 29 13:39:21 +0000 2020


Replying to @roxanasoi and @agidari

At our next W3C Credentials CG open call I will be facilitating a discussion on some the different implementations for #COVID19 contact tracing #LocationPrivacy & related topics. Many good links in thread & in replies to meeting invite. We can do better! https://twitter.com/christophera/status/1243628736013979648?s=21 https://twitter.com/ChristopherA/status/1243628736013979648

Sun Mar 29 13:52:22 +0000 2020


Replying to @mi_homme_michel, @phl43 and @adelaigue

At our next W3C Credentials CG open call I will be facilitating a discussion on some the different implementations for #COVID19 contact tracing #LocationPrivacy & related topics. Many good links in thread & in replies to meeting invite. We can do better! https://twitter.com/christophera/status/1243628736013979648?s=21

Sun Mar 29 13:53:04 +0000 2020


RT @amibendavid: Israel’s Ministry of Health, just released an Open Source app called Hamagen (The Shield), which checks user location aga…

Sun Mar 29 13:53:15 +0000 2020


Replying to @amibendavid

At our next W3C Credentials CG open call I will be facilitating a discussion on some the different implementations for #COVID19 contact tracing #LocationPrivacy & related topics. Many good links in thread & in replies to meeting invite. We can do better! https://twitter.com/christophera/status/1243628736013979648?s=21

Sun Mar 29 13:53:23 +0000 2020


RT @Thomasbcn: The Pandora box is open

European telcos agree to hand over full user location data to the EU/States. EDPS already approved…

Sun Mar 29 13:53:58 +0000 2020


Replying to @Thomasbcn

At our next W3C Credentials CG open call I will be facilitating a discussion on some the different implementations for #COVID19 contact tracing #LocationPrivacy & related topics. Many good links in thread & in replies to meeting invite. We can do better! https://twitter.com/christophera/status/1243628736013979648?s=21

Sun Mar 29 13:54:14 +0000 2020


Replying to @KateRoseBee and @alfredwkng

At our next W3C Credentials CG open call I will be facilitating a discussion on some the different implementations for #COVID19 contact tracing #LocationPrivacy & related topics. Many good links in thread & in replies to meeting invite. We can do better! https://twitter.com/christophera/status/1243628736013979648?s=21

Sun Mar 29 13:55:17 +0000 2020


Replying to @InsaneMole and @SarahJamieLewis

At our next W3C Credentials CG open call I will be facilitating a discussion on some the different implementations for #COVID19 contact tracing #LocationPrivacy & related topics. Many good links in thread & in replies to meeting invite. We can do better! https://twitter.com/christophera/status/1243628736013979648?s=21

Sun Mar 29 13:56:09 +0000 2020


RT @PotestioLawyers: PRIVACY LAWS: GATHERING CELL PHONE DATA

https://business.financialpost.com/technology/city-of-toronto-gathering-cellphone-location-data-from-telecoms-in-bid-to-slow-spread-of-covid-19-tory

City says data will be used to encourage social dis…

Sun Mar 29 13:56:37 +0000 2020


Replying to @d7b and @AlexSaundersAU

At our next W3C Credentials CG open call I will be facilitating a discussion on some the different implementations for #COVID19 contact tracing #LocationPrivacy & related topics. Many good links in thread & in replies to meeting invite. We can do better! https://twitter.com/christophera/status/1243628736013979648?s=21

Sun Mar 29 13:57:21 +0000 2020


Replying to @saikatc and @ShaliniPersaud

At our next W3C Credentials CG open call I will be facilitating a discussion on some the different implementations for #COVID19 contact tracing #LocationPrivacy & related topics. Many good links in thread & in replies to meeting invite. We can do better! https://twitter.com/christophera/status/1243628736013979648?s=21

Sun Mar 29 13:58:33 +0000 2020


RT @EinsteinsAttic: An open-ended [Thread] on #COVID19 #ContactTracking #apps & approaches.

First up, #PrivateKit #SafePaths from @MIT:
ht…

Sun Mar 29 13:59:21 +0000 2020


Replying to @aral, @EinsteinsAttic and @MIT

At our next W3C Credentials CG open call I will be facilitating a discussion on some the different implementations for #COVID19 contact tracing #LocationPrivacy & related topics. Many good links in thread & in replies to meeting invite. We can do better! https://twitter.com/christophera/status/1243628736013979648?s=21

Sun Mar 29 13:59:43 +0000 2020


Replying to @rzanardelli

At our next W3C Credentials CG open call I will be facilitating a discussion on some the different implementations for #COVID19 contact tracing #LocationPrivacy & related topics. Many good links in thread & in replies to meeting invite. We can do better! https://twitter.com/christophera/status/1243628736013979648?s=21

Sun Mar 29 14:00:52 +0000 2020


Replying to @gidgetdigit, @MIT, @stalfel and @mbauwens

At our next W3C Credentials CG open call I will be facilitating a discussion on some the different implementations for #COVID19 contact tracing #LocationPrivacy & related topics. Many good links in thread & in replies to meeting invite. We can do better! https://twitter.com/christophera/status/1243628736013979648?s=21

Sun Mar 29 14:01:48 +0000 2020


Replying to @insideNiMA and @MIT

At our next W3C Credentials CG open call I will be facilitating a discussion on some the different implementations for #COVID19 contact tracing #LocationPrivacy & related topics. Many good links in thread & in replies to meeting invite. We can do better! https://twitter.com/christophera/status/1243628736013979648?s=21

Sun Mar 29 14:02:24 +0000 2020


Replying to @hackylawyER, @wilbanks, @SavageLucia, @nytimes and @seanmmcdonald

At our next W3C Credentials CG open call I will be facilitating a discussion on some the different implementations for #COVID19 contact tracing #LocationPrivacy & related topics. Many good links in thread & in replies to meeting invite. We can do better! https://twitter.com/christophera/status/1243628736013979648?s=21

Sun Mar 29 14:03:16 +0000 2020


RT @HarvLRev: NEW: Contagion and the Right to Travel by @AnthonyMKreis https://blog.harvardlawreview.org/contagion-and-the-right-to-travel/

Sun Mar 29 14:03:31 +0000 2020


👍“before we debate the particulars of a specific technology or application, before we tweak certain features or functionality to better protect individual privacy, or before we impose certain transparency or accountability measures, we take a step back.“ https://medium.com/berkman-klein-center/when-privacy-meets-pandemic-fbf9154f80b3

Sun Mar 29 14:06:17 +0000 2020


“Before we concede that a measure is necessary & begin to assess its proportionality, we question that underlying assumption—especially when it’s coming from private companies who stand to gain from it or governments who fear being perceived as lacking control over the situation”

Sun Mar 29 14:08:03 +0000 2020


RT @hackylawyER: @seanmmcdonald And then they start with the wristbands and ankle bracelets https://www.businessinsider.com/hong-kong-wristbands-tracking-people-in-coronavirus-quarantine-2020-2

Sun Mar 29 14:09:41 +0000 2020


RT @BKCHarvard: .@hackylawyER applied core international human rights principles to coronavirus-related privacy interferences
https://t.co/…

Sun Mar 29 14:10:52 +0000 2020


RT @peterjukes: Germany’s coronavirus death rate is lower than Italy, China, Spain, France - why? Short answer — contact tracing. https://…

Sun Mar 29 14:19:21 +0000 2020


Replying to @MengoWango

I know that JL Lenz wrote a book that included details on how to do it, but I don’t know specifics. It is was fairly fast, and with only punch cards and no real computers could efficiently turn up the matching internal registry entry to match (or fail to match) the identity card.

Sun Mar 29 19:17:23 +0000 2020


👍 “we have to try! An SSI solution, which respects the principles set by the community is far better than a system characterised by a lack of user control and the empowerment of surveillance capitalist!” https://twitter.com/SSI_Ambassador/status/1244296261777457158

Sun Mar 29 19:19:59 +0000 2020


Replying to @alececere, @Thomasbcn and @coinspree

Can we get you to support onion v3 and QuickConnect standard? This will allow @FullyNoded-2 iOS wallet and other personal self-sovereign tools to securely & uncorrelatably communicate with your full node wherever it is.

Sun Mar 29 19:25:01 +0000 2020


Despite that I agree with those like @SarahJamieLewis that a key problem is that the task of #LocationPrivacy & real anonymity is extremely difficult, I do believe that in the short term we can be pragmatic & not suffer “the perfect is the enemy of the good”… https://twitter.com/SarahJamieLewis/status/1242142318443917312

Sun Mar 29 19:30:04 +0000 2020


…regarding #LocationPrivacy we can share best practices, salute those doing the right thing, shame those who do not, and demonstrate our commitment to both the common good as well as to preventing individual harm. An effective Honor System is not the worst short-term outcome. …

Sun Mar 29 19:31:41 +0000 2020


We also need to set the stage to invest in the much more difficult problems of solving these problems long-term. We need to fund things like deep requirements engineering, great user centric design including nudge/incentive/mechanism/ approaches, as well as implementing the…

Sun Mar 29 19:41:07 +0000 2020


…latest secure code practices, privacy protocols, zk-proofs and other modern cryptographic security approaches, etc.

Sun Mar 29 19:41:30 +0000 2020


…For if we do not be somewhat pragmatic now & thus fail to set a stage for investment in a more ideal future, we risk that everything we are currently doing on the privacy front now. It will fail because in the end, no matter what we do everyone will be tracked at another layer.

Sun Mar 29 19:44:34 +0000 2020


RT @ChristopherA: …regarding #LocationPrivacy we can share best practices, salute those doing the right thing, shame those who do not, and…

Sun Mar 29 19:44:44 +0000 2020


RT @ChristopherA: We also need to set the stage to invest in the much more difficult problems of solving these problems long-term. We need…

Sun Mar 29 19:44:46 +0000 2020


RT @ChristopherA: …latest secure code practices, privacy protocols, zk-proofs and other modern cryptographic security approaches, etc.

Sun Mar 29 19:44:49 +0000 2020


RT @ChristopherA: …For if we do not be somewhat pragmatic now & thus fail to set a stage for investment in a more ideal future, we risk tha…

Sun Mar 29 19:44:53 +0000 2020


Join us in a constructive conversation in our W3C-CCG call Tuesday. There are no easy answers but we can at least do better! https://twitter.com/christophera/status/1243628736013979648?s=21 https://twitter.com/ChristopherA/status/1243628736013979648

Sun Mar 29 19:46:46 +0000 2020


RT @ManningBooks: Moving the control of digital identities from third party “identity providers” directly to individuals is now possible wi…

Sun Mar 29 22:05:12 +0000 2020


Largely the W3C decentralized identity architects & developers agree that #dataownership & monetization of #personaldata is a bad idea (and @hackylawyER’s advocacy has definitely helped us). The challenge now is to get the word back out investors, corps, bizdev & gov people. https://twitter.com/hackylawyER/status/1244288193547157504

Sun Mar 29 22:43:23 +0000 2020


My friend, colleague & amazing graphic recorder @kelvy_bird has a free cheat sheet for all the little hidden features of #zoom. The app has a great “one-click & connect” experience but even for techies it seems to hide a lot. #useful https://twitter.com/kelvy_bird/status/1243574465172328448

Mon Mar 30 01:30:53 +0000 2020


RT @FullyNoded: ⚠️ PSA! If you are using our testing node with FN2 we will be deleting all the old style wallets over the next few days! If…

Mon Mar 30 03:05:16 +0000 2020


Our W3C-CCG call on #LocationPrivacy is tomorrow! https://twitter.com/ChristopherA/status/1243628736013979648

Mon Mar 30 19:14:04 +0000 2020


Replying to @MarcHochstein

Motto: Light ‘em up ‘til someone falls.😈

Mon Mar 30 19:23:38 +0000 2020


I believe that people trying to support technologies for social good need to understand the psychological & sociological underpinnings of influence. We can get better results simply by wording and order how we present the advocacy. I’m still learning. https://www.influenceatwork.com/inside-influence-report/advice-for-reducing-undesirable-covid-19-behaviors/

Mon Mar 30 19:58:22 +0000 2020


I have a presentation from 2010 on the topic of science of persuasion & influence and how to leverage in online: https://www.dropbox.com/s/600i92fckbhn55l/Tactics%20of%20Persuasion%20%26%20Influence%20%28portrait%20slides%20with%20slideshare%20transcript%29.pdf?dl=0 (pdf of slides & transcription of my talk).

Mon Mar 30 20:06:35 +0000 2020


Can’t we learn after 2400 years! No, apparently we can’t! 🤬 “Dictatorship naturally arises out of democracy, and the most aggravated form of tyranny and slavery out of the most extreme liberty.”—Plato in The Republic. https://twitter.com/balazscseko/status/1244612142831198209

Tue Mar 31 00:48:43 +0000 2020


@COLDCARDwallet who on your team can we talk to about working together on some better standards around multisig PSBT wallets? For instance, if you have only entirely offline wallet & multiple network wallets that use it, there is a risk of key reuse. BIP84 doesn’t quite cut it.

Tue Mar 31 01:56:21 +0000 2020


Replying to @nvk and @COLDCARDwallet

You don’t follow me so I can’t DM. But my email is public: ChristopherA@LifeWithAlacrity.com

Tue Mar 31 03:24:55 +0000 2020


RT @La__Cuen: Every Israeli (in the country) now has a score from 1-10, indicating the likelihood that he will infect people with Coronavir…

Tue Mar 31 03:25:29 +0000 2020


RT @danheld: 1/ I’ve signed up with Alcor, a cryopreservation company. As part of that, I get a quarterly magazine. The last one was a prof…

Tue Mar 31 03:33:38 +0000 2020


RT @RuffTimo: This is #SSI literally saving lives.

Dr. Manreet Nijjar (@truu_id) is an infectious disease specialist who’s been working on…

Tue Mar 31 03:45:26 +0000 2020


RT @ZenOfDesign: Just so non-game devs know: every game dev looked at this tweet’s title and immediately had a flash of panic and horror, b…

Tue Mar 31 03:48:55 +0000 2020


“The coronavirus epidemic is thus a major test of citizenship…If we fail to make the right choice, we might find ourselves signing away our most precious freedoms, thinking that this is the only way to safeguard our health.” https://amp.ft.com/content/19d90308-6858-11ea-a3c9-1fe6fedcca75

Tue Mar 31 07:56:16 +0000 2020


Anorher good article diving into how we might better address #LocationPrivacy solutions, by @xotoxot https://blog.xot.nl/2020/03/25/hansel-and-gretel-and-the-virus-privacy-conscious-contact-tracing/

Tue Mar 31 08:29:18 +0000 2020


I hope @xotoxot can come to https://twitter.com/christophera/status/1243628736013979648?s=21 https://twitter.com/ChristopherA/status/1243628736013979648

Tue Mar 31 08:33:58 +0000 2020


“You understand the game behind the Curtain too well not to perceive the old trick of turning every contingency into a resource for accumulating force in the Government” — James Madison in letter to Thomas Jefferson, 1794. https://twitter.com/HillebrandMax/status/1241714880081735680

Tue Mar 31 17:17:32 +0000 2020


Replying to @MicrobioCarly and @alexstamos

We had a call in the W3C Credentials CG this morning on this & related projects. Agenda for today’s call with links, minutes and audio for the call as well as related topics in mail archive: https://lists.w3.org/Archives/Public/public-credentials/2020Mar/

Tue Mar 31 21:17:53 +0000 2020


Any underemployed @iosDevCamp veterans have some time to give the Mac version of Bitcoin-Standup some deserved attention? It is in Swift/Catalyst but needs some Catalina tricks to make it truly Mac-like. Plus we’d like to add support of Lightning Network. https://github.com/BlockchainCommons/Bitcoin-StandUp-MacOS

Wed Apr 01 02:45:56 +0000 2020


This looks interesting — the free version supports E2E encryption in the sync of your notes, and the source is available on GitHub. I’ll have to investigate further, but if is as good as it looks so far on both Mac & iOS I may be switching. https://twitter.com/StandardNotes/status/1027234611561095168

Wed Apr 01 02:55:39 +0000 2020


Replying to @Xis10tial1 and @iOSDevCamp

We want Bitcoin-Standup to be multi-platform. Biggest hole right now actually is Windows. But I don’t want any platform to be 2nd Class. If your phone and your node are going to be a trusted pair for your self-sovereign life, both must maximize whatever platform they are on.

Wed Apr 01 05:23:51 +0000 2020

Updated: