RT @bsuichies: "Greater accuracy [of facial recognition] is not the point. We need strong legal safeguards that guarantee civil rights, fai…

RT @feross: I'm ending the npm install funding experiment I introduced a few days ago.

I appreciate the thoughtful discussion and feedba…

A collaborative art space #avantgardablockbox at Veletržni Trade Fair Palace in Prague. Portrait of the artist. Portrait of the artist’s girlfriend.

Here are the summaries for the remaining topic papers submitted to this week’s #RWOT9 in Prague. We hope that the community has had an opportunity to scan all of the papers & read in detail the ones related to their own work, before we set our collaborative choices on Tuesday.

The complete list of the suggested topics and advance readings for #RWPT9, as well as summary Primer documents are listed at: https://github.com/WebOfTrustInfo/rwot9-prague/blob/master/topics-and-advance-readings/README.md

TOPIC Reimagining “global”: Programmable incentivization and implications for personal governance KEY CONCEPT “how could self-sovereign identities and smart contracts offer new opportunities for personal self-governance?” https://github.com/weboftrustinfo/rwot9-prague/blob/master/topics-and-advance-readings/reimagining-global-rwot9.md

…”As the world globalizes, long-held understandings about the nature and role of government and the individual are being challenged. The concept of governance has been expanding to include the processes of decision-making…(all)…actors”

…”To govern is to make decisions, to aggregate and allocate resources in accordance with the needs of the governed. Mechanisms of governance often use the granting and revocation of access to resources - goods, services, information or access - to incentivize…the system”

…”each individual person engages in self-governance in some form. Ultimately we are all governing ourselves - we control (consciously or less so) the actions of our minds and our bodies within our individual awarenesses…”

…”…We each make decisions about the resources under our control and decide the boundaries of acceptable behavior, as well as consequences for crossing those boundaries.”

…”It is at this level - the private, individual level - that blockchains may offer an opportunity to formalize those personal processes of governance into a personal structure of government.”

…”Self-sovereign identities put the user in control of their informational resources - personal data and financial assets - by decentralizing responsibility of maintaining custody of the private keys required to prove identity and access personal information.”

…”Alice could create a payable smart contract that, upon reception of funds, diverts a portion of the income to a wallet address that Alice has budgeted for her health and exercise - or to a smart contract instance that she has sole access to.”

…”If the gyms and exercise studios she frequented accepted payment within such a system, this contract could have a fixed list of approved addresses where contract funds could be sent. With this, Alice has to spend that money at gyms”

…”While a small example, these ideas illustrate the potential for enable self sovereign individuals to shape their own behavior by programming their own incentives. They also raise questions about the ethics and risks of such a system.”

TOPIC NVC for Standards Working Groups KEY CONCEPT Use non-violent communications (NVC) & cognitive behavioral (CBT) methodologies to create a collaboration toolkit for Internet standards working groups. https://github.com/WebOfTrustInfo/rwot9-prague/blob/master/topics-and-advance-readings/nvc.md

…”We believe that a carefully designed combination of NVC and CBT would empower working groups and their facilitators to be more effective, by learning how to perceive the emotional reactions and tacit needs of participants in a working group,…”

…”…and to learn the art of making more effective requests. If the facilitator can teach these techniques, it can create a shared basis for connection, cooperation, and effectiveness in the discussion.”

…”The combination of these approaches may provide a simplified approach to conflict resolution skills training, to help working group participants and facilitators to learn how to redirect conflict without emotional detouring and incorporate enhanced communication techniques”

…”Observations are what we see or hear that we identify as the stimulus to our reactions. Our aim is to describe what we are reacting to concretely, specifically and neutrally, much as a video camera might capture…This helps create a shared reality with the other person.”

…”Feelings represent our emotional experience and physical sensations associated with our needs that have been met or that remain unmet (see below). Our aim is to identify, name and connect with those feelings…”

…”…The key to identifying and expressing feelings is to focus on words that describe our inner experience rather than words that describe our interpretations of people’s actions.”

…”Needs are an expression of our shared humanity. All human beings share key needs for survival. We also share many other needs, though we may experience them to varying degrees and…”

…”…may experience them more or less intensely at various times. In the context of NVC, needs refer to what is most alive in us: our core values and human desires.”

…”Requests are a technique that can be used to help get cooperation for particular strategies to enable more cohesive collaboration…”

…”…Learning to make clear requests and shifting our consciousness to making requests in place of demands are very challenging skills for most people, but could be the key to transforming negative situations encountered in standards development work”

…”Finally, this working group could return the favor, by helping to drive the adoption of NVC through the design and development of decentralized technologies to support the usage and viral promotion of NVC…”

…”The concept is simple: by creating a verifiable claim/credential for moderation and facilitation training, using NVC as a pilot training system, users could be verified for facilitation and moderation roles in online communities.”

TOPIC Publicly verifiable split-key schemes for hybrid secret sharing and multi-sig authorization KEY CONCEPT In social key recovery, rather than splitting keys it is possible to create a hybrid approach for the social shares to be used as signatures. https://github.com/WebOfTrustInfo/rwot9-prague/blob/master/topics-and-advance-readings/verifiable-secret-sharing.md

…”Social key recovery schemes allow users to specify groups of individuals that acting together possess the ability to recover the root secret of the user.”

…”The most popular social key recovery schemes, such as Shamir Secret Sharing, combine shares to reconstruct the original secret on a single machine, where it can then be used for signing authorization or other purposes.”

…”Multi-signature schemes, such as MuSig over Schnorr, allow groups of individuals acting together to create signatures for a combined private key that is never materialized as part of the signing process.”

…”Threshold multi-signature schemes extend this core capability to create k-of-n signing thresholds for some set of key holders”

…”There is a deep connection between social key recovery and threshold multi-signature schemes, as the same mathematics underly both”

…”In principle this commonality allows for the specification of a protocols that combine both approaches, allowing users to choose whether to initialize by splitting a secret or multi-party compute, or to recover the master secret or create signatures without revealing shares.”

…”Performing threshold secret sharing of an asymmetric secret over the same group as the signature scheme has one further advantage: the scheme is (publicly) verifiable secret sharing, or VSS.”

…” A VSS permits arbitrary third parties that did not partake in the secret split to nevertheless verify that the distributed shares are sufficient to reconstruct the secret or generate a signature.”

…”This use case is of particular interest as a self-sovereign alternative in situations where key escrow has been traditionally required by regulators: a public auditor could…”

…”…ensure that sufficient shares to reconstruct a secret have been dutifully backed up, e.g. by encrypting them to a set of functionaries for that purpose.”

…This paper only explores some of the beginning of the possibilities offered by VSS, as it can also be used for group authorization, group credentials (both as issuer and subject), and interesting governance possibilities.

I believe that I have summarized all the papers submitted to #RWOT9, but some were added last minute over the week. If I’ve missed your topic paper, please double-check that you are properly listed in the README and reply to this thread so others can read it.

If you are interested in these topics but will not be in Prague for #RWOT9, keep an eye on the new @RWoTEvents account, which will be a group account for us to share details during and between events. We’ll announce at end of week the collaborative draft projects we selected.

If you’ve not read the summaries that I’ve made for the topics and advance reading papers submitted to #RebootingWebOfTrust’s design workshop in Prague #RWOT9, here is the complete list. Intent of these papers is to inform our collaborative process and choices this week…

RT @ChristopherA: TOPIC Publicly verifiable split-key schemes for hybrid secret sharing and multi-sig authorization KEY CONCEPT In social k…

“the mind is a…last refuge of personal freedom and self-determination…Yet, with advances in neural engineering, brain imaging and pervasive neurotechnology, the mind might no longer be such unassailable fortress.” https://www.ncbi.nlm.nih.gov/pmc/articles/PMC5447561/

“mental self-determination, comprises two fundamental and intimately related principles: (a) the right of individuals to use emerging neurotechnologies; (b) the protection of individuals from the coercive and unconsented use of such technologies.”

Four rights of Cognitive liberty: The right to mental self-determination. The right to mental privacy. The right to mental integrity. The right to psychological continuity.

Hmm. Human Rights _____ Digital Identity. What is the right fill-in-the blank? Focused? Supporting? Enabling?

RT @kanzure: Transcript: "Self-sovereign identity: Ideology and architecture" with @ChristopherA http://diyhpl.us/wiki/transcripts/rebooting-web-of-trust/2019-prague/self-sovereign-identity-ideology-and-architecture/ #RebootingWebOfTru…

RT @RebeccaRachmany: "You said workflows, I heard dorkflows," @ChristopherA in a discussion of how identity wonks don't comprehend user exp…

RT @kanzure: Transcript: Intro to #RebootingWebOfTrust Workshop 9 http://diyhpl.us/wiki/transcripts/rebooting-web-of-trust/2019-prague/intro/ @ChristopherA

RT @discipl_org: Kickoff @RWoTEvents Prague by @ChristopherA

During our #RWOT9 weak-signals exercise, our group wanted on defining “agency” but it was too tough. So we instead decided to focus on definition of “self” in SSI as the community has somewhat already discussed “sovereign” & “identity”. This is what we came up with:

RT @kanzure: Transcript: Shamir secret sharing and verifiable secret sharing http://diyhpl.us/wiki/transcripts/rebooting-web-of-trust/2019-prague/shamir-secret-sharing/ #RebootingWebOfTrust #rwot9 @RWoTEven…

RT @RWoTEvents: Here's a look at the 18 papers that we've begun work on for #RWOT9. https://github.com/WebOfTrustInfo/rwot9-prague/blob/master/event-documents/05-abstracts.md

A quick summary and link to full abstracts of the 18 decentralized identity papers/projects that we collaboratively selected to work together on this week at #RWOT9 in Prague. Goal: first draft by Friday, final draft before #RWOT next spring. https://twitter.com/RWOTEvents/status/1168915616780214272

RT @codenamedmitri: At #RWOT9, excited to see all the projects in the decentralized identity and trust space (especially key management, pe…

We do have a demo night this evening that will be recorded. The video for previous demos from #RWOT8 in Barcelona is at https://youtu.be/7KrSw81F4Us

RT @JakubLanc: #RWOT #RWOT9 in full steam.

RT @mattgcondon: OH at #RWOT9 "so on the intersection of Will Smith and communism…"

RT @RWoTEvents: Kicking off the work on day two of #RWOT9

RT @RWoTEvents: So if you're asking what in the world Rebooting the Web of Trust (#RWOT9) is, here's the primer on what we do. https://t.co…

RT @framicheli: Demo night opening with @ChristopherA #RWOT9

RT @RWoTEvents: We have some amazingly mature products coming out of the decentralized identity community. Here's a brief discussion of the…

RT @rhiaro: #RWOT9 demos, knocking it out of the park just like last time. Almost making me think this stuff might be going somewhere :) ht…

RT @RWoTEvents: Tonight we're seeing demos of impressively mature digital identity apps, a few supported by the Dutch government! #RWOT9 ht…

RT @JoeAndrieu: #RWOT9 Humor: how many identerati does it take to change a light bulb?

Maybe a white paper on all the rabbit holes. 😉

RT @wmclaxton: This is our tour group in Prague @ChristopherA https://photos.app.goo.gl/zLK6gJLvMEFp5qXZA

I’m quite proud to report that the charter for the “Decentralized Identifier Working Group” #DIDWG has been approved by the @W3C, and pleased that this was announced during #RWOT9, the community where this specification was incubated. https://www.w3.org/2019/09/did-wg-charter.html

Another milestone for the #W3C credentials community (the Credentials Community Group & Verifiable Claims Working Group) is that absent formal objections the Verifiable Credentials specification is just 4 weeks away from being a global standard! https://twitter.com/w3c/status/1169499272288641024

RT @RWoTEvents: We continue our work on day three of #RWOT9. Though we had some mandatory fun in the morning, we've also spent some time…

RT @laparisa: The @nytimes asked me what a typical work week looked like, so I shared a diary with @kateconger: https://www.nytimes.com/2019/09/05/business/parisa-tabriz-google-work-diary.html

RT @reidhoffman: Inspired by @Lin_Manuel, I produced a battle rap music video about centralized and decentralized currencies, pitting Alexa…

RT @InsertStrawHere: Matching nails helps you roll crits, right?

RT @FullyNoded: Don't have a node of your own? Use this great tutorial to set one up 👍

Continue from there to learn how to program bitcoi…

RT @RWoTEvents: Four days later, #RWOT9 is over. Here's some of the best inspiration we had from each of our papers in process. https://t.c…

RT @discipl_org: Final day @RWoTEvents #RWOT9 and we've committed to host a challenge that will help the community building stuff. Eat our…

RT @avichal: 1/ Self-sovereign identity is not going to happen just because people want an identity. People want value and identity emerges…

RT @arturjanc: Some notes from USENIX Security '19 about the sources of major, long-standing security problems in the web platform, and the…

RT @tveastman: @freakboy3742 Part of my ongoing theory that every single consumer product's goal is not to consume 100% of your money, but…

@thegrugq PM me about opportunities for partnership with @BlockchainComns & @htcexodus

RT @TaliaRinger: A reminder that our survey paper "QED at Large: A Survey of Engineering of Formally Verified Software" is free on the publ…

RT @Carnage4Life: Fraudsters used AI software to mimic the voice of the German CEO to get a UK subsidiary to wire them $243,000. This seems…

RT @troyhunt: Chrome 77 goes stable tomorrow and removes the EV indicator from next to the address bar. Who'd like to guess how many people…

RT @troyhunt: Further, how long do you think commercial CAs will continue to push false messaging like this? Beyond Chrome 77 launch? Even…

RT @SarahJamieLewis: Where is the non-evil money?

This beautiful song, it’s lyrics, and it’s music video oddly connect a few of my very disparate communities: https://youtu.be/tx17RvPMaQ8 #RisingAppalachia #Resilient

RT @coindesk: Catalonia will develop a decentralized identity platform aimed to give citizens control of their own data when interacting wi…

The decentralized identity community was invited to Barcelona for #RWOT8 last spring precisely because they wanted to listen to us. The design workshop was held in a Catalonian government conference center. Their implementation has a lot of constraints as Spain objects.

“An analysis shows that information flow between individuals in a social network can be ‘gerrymandered’ to skew perceptions of how others in the community will vote — which can alter the outcomes of elections.” https://www.nature.com/articles/d41586-019-02562-z

Most of this is already in Wyoming law. Stockholders can be represented by keys, corporate records on blockchains, etc. This is why I’m going back to Wyoming Legislative Task Force meeting next week, demoing privacy-focused #SSI infrastructure apps for Dept. of State.

Replying to @balajis

One of the “lemonade stand” examples that I’m working on is a Publisher as a series LLC where every series corp holds IP for trademarks & creative works for a single set of collaborative media storytellers. Maybe eventually one of these will be the next Game of Thrones or Buffy.

This is a very difficult area. I know two female entrepreneurs that did advocacy in Afghanistan. One had good results teaching women to be entrepreneurs but she was pushed out by government & safety problems, the other stopped because her clients were becoming shunned by village. https://twitter.com/hackylawyER/status/1171223993195667456

We (@BlockchainComns) have been talking for about a year in a similar area of recursive proofs using ‘secq’ — it is a ‘mirror’ curve for secp256k1 where n & p are swapped, and could be used for bulletproofs for curves in secp. https://github.com/BlockchainCommons/secp256k1/issues/1#issuecomment-410482607

Replying to @cwgoes, @zooko, @ebfull, @feministPLT, @str4d, @ElectricCoinCo and @BlockchainComns

We submitted this to the zcash foundation for further research last year, but unfortunately it was not accepted. We feel the strength of bitcoins’s proven secp256k1 lib made it an excellent candidate for further development. Is Tweedledee or Tweedledum really better than secp?

RT @unchainedcap: We'd like to thank @satoshilabs, @ChristopherA, @MarkFriedenbach, and the @htcexodus team for their work on the SLIP-0039…

RT @unchainedcap: We are proud to announce the alpha release of Hermit, an open source, air-gapped, SLIP-0039 sharded command line wallet.…

RT @ebfull: @ChristopherA @cwgoes @zooko @feministPLT @str4d @ElectricCoinCo @BlockchainComns Not necessarily, we

RT @ebfull: @ChristopherA @cwgoes @zooko @feministPLT @str4d @ElectricCoinCo @BlockchainComns Personally I think the secp cycle might end u…

We (@JoeAndrieu and I) wrote a some about intersection of cryptocurrency & identity wallets that you might find informative in an #RWOT9 topics: https://github.com/WebOfTrustInfo/rwot9-prague/blob/master/topics-and-advance-readings/whats-wallet.md @tschubotz

I suggest you start with the Primers listed at top of https://github.com/WebOfTrustInfo/rwot9-prague/tree/master/topics-and-advance-readings

This author of this thread @ianbassin enumerates six steps in Orban’s soft capture of the Hungarian free press, a key part of dismantling Hungarian democracy. He judges that based on this tweet that Trump & his supporters in the US are moving on to step two of the six.😡 https://twitter.com/ianbassin/status/1171213438187536385

Does free will exist? A popularized neuroscience experiment attempted to disprove it. “a classic scientific mistake, so subtle that no one had noticed it and no amount of replication studies could have solved it, unless they started testing for causality.” https://www.theatlantic.com/health/archive/2019/09/free-will-bereitschaftspotential/597736/

There are some important patterns for #consent emerging from the table-top role-play gaming community #TTRPG. This free book from @MonteCookGames shares much of what we are learning. These lessons are worth broader readership beyond this small base audience to the broader world. https://twitter.com/MonteJCook/status/1172514015949361154

This isn’t about political correctness. It is basic ethics of how an adult collaborates in a complicated world. We can learn these rules in play, but ultimately they apply to a broader context — our daily life working with others.

RT @ChristopherA: This isn’t about political correctness. It is basic ethics of how an adult collaborates in a complicated world. We can le…

I agree that the basic problem is etiquette, that check lists should not be required, and that “rules-lawyering” is a bad pattern. However, as a culture we have become poor at teaching etiquette & consent, and #TTRPG’s are finding ways to teach in through experience in play.

On the agenda for next week’s Wyoming Legislative Blockchain Task Force is the topic of prohibiting being being compelled to produce a private key. You can still be compelled by courts to transfer a digital asset or prove control of an asset using a public key. #KeysAreNotAssets

There is some prior discussion on this topic starting with my original thread on twitter: https://twitter.com/ChristopherA/status/1121883628701544449

And and further discussions in this thread after the last Blockchain Task Force meeting: https://twitter.com/ChristopherA/status/1164057639233323008

This is an important first step in a critical issue for the future of our society. Our personal freedoms and civil rights have been about our physical bodies, but increasingly our “selves” reach into the digital world, where these rights have become defined as alienable property.

Also, our freedom & rights in our physical selves are increasingly becoming entwined with our digital world, resulting in a risk that our inalienable rights become alienable property. Examples are Uber worker abuses, as well as threats of biometrics, brain/behavior scans, etc.

Under US 5th Amendment & the UN Declaration of Human I have rights to freedom of thought and conscience in my human body. However, increasingly portions of my memory & mind are delegated to digital devices like my phone, which are alienable property that can be taken from me.

Where the intersection of our physical selves and our digital selves reside is in our mental secrets, which in current technology is manifested in private keys. These secrets are not safe to share or transfer, and we don’t have good ways to do so. So they should be protected.

Ultimately we should to go beyond even this proposed legislation. @JasonCoombsCEO suggest that Wyoming should consider even stronger statement, a “Wyoming Key Privacy Act” along with objective “bright-line rule” protecting our personal and digital self-sovereignty.

Jason suggests “first establish the absolute right of the private key holder to employ any technology or method they wish to use to keep their private keys private”

Jason continues “The statute should create a bright line safe harbor, one which preempts any other statute or lawful order that might issue from any court or authority, which is an affirmative defense against prosecution or civil liability of any kind for anyone’s refusal to…”

“…to reveal their private keys to anyone else under any circumstances, including if any court order from any jurisdiction seeks to compel production.”

“Everyone has a natural right to be secure in the contents of our most private and most important inner state of being…”

“…No law should be enacted which empowers government to extract from our minds and memories the private keys that potentially represent our relationships, our personal records and our assets.”

There is some justification in this approach given the recent US Supreme Court case about cell phone searches. Justice Alito says “we should not mechanically apply the rule used in the predigital era to the search of a cell phone…”

Justice Alioto continues “…Many cell phones now in use are capable of storing and accessing a quantity of information, some highly personal, that no person would ever have had on his person in hard-copy form.”

This discussion about protecting private keys & rights will continue next Friday morning at 11am in the public meeting of the Wyoming Blockchain Task Force. If will be there I hope that you’ll join me in offering your support of these initiatives.

I also encourage organizations like @EFF, the @ACLU and others to consider putting protection of privacy keys as a civil rights issue on their agenda, and participate in these discussions.

Replying to @prezcannady and @BryceWeiner

I will say the bipartisan team of legislators that are on Wyoming Blockchain Task Force led by @rothfuss @Tyler_Lindholm are listening to experts, have proven themselves open-minded & are willing to learn, and thus have become quite knowledgeable about our space. I’m impressed.

RT @zooko: @yosef____ @BobMcElrath @TuurDemeester Be sure to click through to https://twitter.com/ChristopherA/status/1171529478108921856 and read the replies from the @Elec…

? What is this in reply to?

Replying to @JasonCoombsCEO and @lex_node

This isn’t all about digital assets. Increasingly we are using these same keys to secure our digital identities & with emerging tech will be used as part of joint multi-signatures with combination with others. Thus loss of your keys may result in loss of others rights.

Sat Sep 14 01:44:01 +0000 2019

My argument is that #KeysAreNotAssets. They are a proxy for the secret (in effect like a secret like a PIN but stronger) that allows you to unlock the control to transfer a digital asset. But they are not the asset itself. See thread: https://twitter.com/christophera/status/1172611239412826112?s=21

RT @JasonCoombsCEO: @ChristopherA @lex_node Despite what @lex_node and @propelforward have written and despite their clear thinking in most…

RT @ChristopherA: @Leon_Vandenberg @stephendpalley My argument is that #KeysAreNotAssets. They are a proxy for the secret (in effect like a…

The problem is PINs & passwords in a brain are not secure enough, so we use private keys instead. That makes a private key a more secure proxy for a secret in your brain. A brain secret can’t be compelled under 4th & 5th Amendment, but under current law a key can be compelled.

If you think more carefully about it, as the assets move from key to key, that means that the key can’t be the asset, but only the means of controlling it.

Actually private keys are very difficult to transfer digitally safely. It is easy to use them to secure communications, but much harder to send them to another party securely. All it needs is one step between to be compromised & there are a lot of steps. Thus airgap for purists.

Replying to @dropship_i, @Leon_Vandenberg and @stephendpalley

I disagree. Handing some one a key is like giving someone a key to a safe deposit box, or an even more close analogy your 2nd signature on a travelers check. The bank key or the physical signature may allow a transfer, but it is not the asset.

RT @sqcrypto: We’re giving a bunch of money to @BtcpayServer, a product that appears to be in direct competition with our mothership. It is…

This is exactly what I’m working on under new Wyoming laws—a trust-minimized treasury held by a group. I’ll be presenting on this topic on Friday before the Wyoming Blockchain Task Force, focused initially on the first steps of an pseudoanonymous online Corp or LLC registration.

RT @ChristopherA: @NickSzabo4 This is exactly what I’m working on under new Wyoming laws—a trust-minimized treasury held by a group. I’ll b…

Replying to @NickSzabo4

I’m uncomfortable with many of the governance approaches of many so-called DAOs, as most underestimate the risks of voting, including coercion & collusion, or have fundamental misconceptions about voting. I’ll support them trying to solve the problem, but I’ll focus on treasury.

I’ve been working with @JoeAndrieu and others as pat of @BlockchainComns to define a self-sovereign key management architecture (SSKMA) that is parallel to FIDO which doesn’t deal well with self-sovereign keys. See https://github.com/WebOfTrustInfo/rwot9-prague/blob/master/topics-and-advance-readings/whats-wallet.md

RT @trbouma: So, in conclusion, I believe these are the two underlying patterns for the types and components of an entirely new #digitalarc…

RT @ChristopherA: @trbouma @FIDOAlliance @OPENDIME I’ve been working with @JoeAndrieu and others as pat of @BlockchainComns to define a sel…

Replying to @trbouma, @FIDOAlliance, @OPENDIME, @JoeAndrieu and @BlockchainComns

This SSKMA architecture drawing is still pretty raw, with many missing nodes, misnamed nodes, and every line connecting needs to be named. But starting work on secure wallet that does all three of your tasks.

RT @ChristopherA: @trbouma @FIDOAlliance @OPENDIME @JoeAndrieu @BlockchainComns This SSKMA architecture drawing is still pretty raw, with m…

Any t-shirts for new exit nodes? 😉 https://twitter.com/blockchaincomns/status/1161310976030867456?s=21

RT @LeahHoustonMD: YES!!! Someone else who acknowledges that this is about identity. Only you can speak for you. In order to control how y…

Our new FREE book “#SmartCustody: The Use of Advanced Cryptographic Tools to Improve the Care, Maintenance, Control, and Protection of Digital Assets” published by @BlockchainComns written by myself & @Appelcline is available TODAY! http://bit.ly/SmartCustodyBookV101

Your digital assets are more vulnerable you might think. They could be stolen by hackers, extorted by the mob, expropriated by the government, or lost by you!

The #SmartCustody book details what you need to ensure that you don’t lose your Bitcoins, your Ether, or your self-sovereign identity. It teaches you how to protect your digital data and cryptocurrencies with procedural solutions.

The book offers a risk-modeling methodology that leads you through the process of sketching out your digital-asset processes, identifying your vulnerabilities, determining your true risks, and correcting those dangers.

The book includes an example 14-step cold-storage scenario built using the risk model, along with a set of 27 personified adversaries. Case studies for each help to make the adversaries real, and identify both abstract and historic attacks for each.

Though this book lays its foundation upon the simplest level of self-custodianship, later sections describe how to use the risk modeling techniques (along with the cold-storage scenario and the adversaries list) to be a Smart Custodian if you’re a fiduciary.

If you’re a small Bitcoin holder, a cryptocurrency trader, or a fund manager, #SmartCustody can offer you procedural techniques and adversarial insights to improve the security of your digital assets.

The #SmartCustody book has been comprehensively peer-reviewed by experts in the digital-asset ecosystem, including contributors to open-source project such as Bitcoin Core, blockchain tech companies like Blockstream, Ledger & Tokensoft, and a variety of blockchain attorneys.

The #SmartCustody book is available FREE based on the generous donations from our Sustaining Patrons (Digital Contract Design & @htcexodus), Project Sponsors (@AdamantCapital, @beamprivacy, @catallaxy_co, @Ledger, @unchainedcap & @WinsteadPC), and…

…individual financial contributors like @aantonop, @Gabridome, @fredericmeyer @davidstrayhorn and three anonymous supporters.

To keep future editions of the #SmartCustody book free and to support future updates of the book to include including more procedural checklists, wallet hardware & multisig scenarios, you can contribute financially using our @BtcpayServer: http://bit.ly/SupportSmartCustody

The entire #SmartCustody book is available in a Github repo, and is licensed CC-BY-SA. Feel free to make Pull Requests or post issues to help us keep improving it. https://github.com/BlockchainCommons/SmartCustodyBook/

You can sign up to receive occasional announcements about new and updated editions of the book, new whitepapers & procedural documents, and information on upcoming #SmartCustody workshops and events at https://tinyletter.com/SmartCustody

We are investigating a number of social secret recovery, multisig, and timelock solutions to address this scenario. For instance we contributed to @Trezor’s #SLIP39 Shamir secret sharing design, and are working on a peer-reviewed C library to securely implement it.

RT @ChristopherA: The #SmartCustody book is available FREE based on the generous donations from our Sustaining Patrons (Digital Contract De…

RT @ChristopherA: …individual financial contributors like @aantonop, @Gabridome, @fredericmeyer @davidstrayhorn and three anonymous support…

RT @ChristopherA: To keep future editions of the #SmartCustody book free and to support future updates of the book to include including mor…

RT @ChristopherA: The entire #SmartCustody book is available in a Github repo, and is licensed CC-BY-SA. Feel free to make Pull Requests or…

RT @ChristopherA: You can sign up to receive occasional announcements about new and updated editions of the book, new whitepapers & procedu…

#SmartCustody is a project of Blockchain Commons. @BlockchainComns is dedicated to “Supporting Blockchain Infrastructure, Internet Security & Cryptographic Research”. We working on a number of related open source projects such as audited social key recovery libraries, etc.

I will be sharing an overview of #SmartCustody book and answering question during session of the Wyoming Blockchain Stampede @wyohackathon this Saturday at 2:20pm in the @uwengineering building in Laramie.

RT @ChristopherA: @BlockchainComns I will be sharing an overview of #SmartCustody book and answering question during session of the Wyomin…

This week I will be attending the Blockchain Task Force meeting, as well as the Wyoming Blockchain Stampede @wyohackathon. I’m hoping to also talk to people at @UWSchoolofLaw about application of new Wyoming blockchain corporation laws. Who else should I talk to? @rothfuss?

In particular I’m seeking legal side of wallets to support Electronic Corporate Records https://wyoleg.gov/Legislation/2018/HB0101 Limited Liability Companies-Series https://wyoleg.gov/Legislation/2018/HB0126 Corporate Stock-Certificate Tokens https://wyoleg.gov/Legislation/2019/HB0185 & Commercial Filing System https://wyoleg.gov/Legislation/2019/HB0070

Tue Sep 17 17:18:49 +0000 2019

While I am at Wyoming for the Blockchain Task Force & @wyohackathon I will be demoing a prototype air-gapped #BIP39 key recovery <-> #SLIP39 social key recovery device, created by @ksedgwic. A @BlockchainComns investigation. You can also roll dice for entropy.

Tue Sep 17 19:55:42 +0000 2019

If you are interested in supporting us to do this type research & investigation, as well as our efforts toward audited open source cryptographic libraries & reference code, you can sponsor https://btcpay.blockchaincommons.com or contact me to be a sustaining Patron https://btcpay.blockchaincommons.com

I will be there! I arrive in Laramie tonight & am looking forward to meeting Wyoming legislators, regulators, entepreneurs, developers & lawyers over the week. @BlockchainComns is a Wyoming based LLC because of their work in the last three years. I look forward to collaborating! https://twitter.com/CaitlinLong_/status/1173631925765849088

Tue Sep 17 20:12:01 +0000 2019

We hope to have some our shell scripts soon for testing #SLIP39 libraries but you really should not generate long-term keys (and social key recovery secrets) with an online device.

Tue Sep 17 20:28:25 +0000 2019

Other investigations are in progess at various stages of maturity: QR code standards for offline airgapped wallet hardware. Reference API for self-sovereign keys so you don’t need separate clients for each hardware walket. RISC-V chips for open cryptographic devices…

Tue Sep 17 20:36:31 +0000 2019

In the non-hardware area we are working on non-Shamir social recovery approaches that don’t require the risky restoration of keys to a single device; methods for trusted key generation even on untrusted hardware. New bulletproofs not just for integers but also for curves & more!

Tue Sep 17 20:45:52 +0000 2019

If you are interested knowing more about the efforts of @BlockchainComns or our other research, or collaborating with us on them, or sponsoring specific projects financially, let us know!

RT @ksedgwic: @TheBTCGame @ChristopherA @timpastoor @BlockchainComns @Appelcline @Trezor @wyohackathon Current PoC uses an ESP32 (Arduino).…

RT @ksedgwic: @TheBTCGame @ChristopherA @timpastoor @BlockchainComns @Appelcline @Trezor @wyohackathon @BTCSocialist Code is here:

RT @ksedgwic: @tadhgcrowley @ChristopherA @timpastoor @BlockchainComns @Appelcline @Trezor @wyohackathon 1. Generating seeds w/ dice avoids…

RT @ksedgwic: @tadhgcrowley @ChristopherA @timpastoor @BlockchainComns @Appelcline @Trezor @wyohackathon 4. Performing the SLIP39 generatio…

Glacier is powerful but at the significant cost of process fatigue. The clincher for me was an early Bitcoin Core developer that admitted to that his Bitcoin was still on paper as he wanted to do Glacier but never got around to it. This process takes about two hours do fully.

A print version of the #SmartCustody book is now available for $13.50 from Lulu as a POD (Print On Demand) paperback. http://www.lulu.com/shop/christopher-allen-and-shannon-appelcline/smartcustody/paperback/product-24249990.html

RT @ChristopherA: @threadreaderapp A print version of the #SmartCustody book is now available for $13.50 from Lulu as a POD (Print On Deman…

RT @Viss: shamelessly stolen from imgur. because relevant.

If any of the hackathon teams want to support decentralized digital identity I’d be glad to assist.

RT @CaitlinLong_: EPIC EPIC EPIC amount of prizes are up for grabs at @wyohackathon, folks–$213,000 & climbing! More than 400 unique regis…

I asked the staffer running the stream to look at this.

I’m participating in this Wyoming Legislative Blockchain Task Force meeting, offering technical advice. For instance this morning I talked about about Wyoming money transmission license rules and being careful about their effect on Lightning Nodes. As usual they understood. https://twitter.com/WYLegislature/status/1174693376232497153

Thu Sep 19 15:49:28 +0000 2019

Any better?

An important feature is that it has NO storage or connectivity. Only input is keyboard and only output is screen. Turn it off all keys are gone.

RT @bitcoinoptech: Bitcoin Optech newsletter #64 is here:

  • summarizes several talks from Bitcoin Edge Dev++ trainings
  • covers Scaling Bi…

RT @robbehnke: inspiring to sit in on the latest Wyoming Blockchain Task Force. @WyoBlockchain @wyohackathon @CaitlinLong_ https://t.co/owU…

Any text for a proposal yet?

RT @btaylor: How Eratosthenes inferred the earth was a sphere and accurately calculated its circumference only with shadows and pacing, as…

Wyoming would like to be on ground floor with new identity laws, as there is little existing legislation. However I’ve been unable to recruit help from some of the forward thinking attorneys on the topic. Not sure why. Support of token laws & being a red state has been suggested.

“Pandemic: Reign of Cthulhu” joins one of the best cooperative game designs with one of my favorite themes (Some context: @Appelcline & I resurrected the best-selling Arkham Horror board game 15 years ago). Our post in @MeeplesTogether explains what’s new in @MattLeacock’s game. https://twitter.com/MeeplesTogether/status/1174821093451845632

RT @ChristopherA: So little of this list of the Xanadu Project’s 18 objectives from 80’s are yet in the WWW https://blog.codinghorror.com/the-xanadu-dream/ https:/…

RT @WYLegislature: Watch live the Blockchain Task Force committee meeting in Laramie: https://www.youtube.com/watch?v=GgXCdv77qpA&feature=youtu.be #wyleg

RT @AmyofAlexandria: Day 2 of Wyoming’s Blockchain Task Force meetings @wyohackathon. Great testimony from @ChristopherA @BlocktechCEO @Cai…

RT @CaitlinLong_: Thanks @ChristopherA for a terrific presentation to the #Wyoming #Blockchain Task Force about decentralized identity, bot…

RT @CaitlinLong_: 2 VIP bills to protect #crypto advanced today at #Wyoming #Blockchain Task Force. 1-protects devs from criminal liab SOL…

The Wyoming Legislative Blockchain Task Force took up my topic of #KeysAreNotAssets today, with spirited dialogue beginning at 3:12:56 mark of this video which includes some of my testimony on this topic. … https://youtu.be/GgXCdv77qpA

… discussion continued in the afternoon session with testimony from former Federal Prosecutor and now @krakenfx General Counsel Mary Beth Buchanan. Good news—passed with no objections to forward to legislative committee! https://youtu.be/PA2U81Ygn7w

RT @ChristopherA: The Wyoming Legislative Blockchain Task Force took up my topic of #KeysAreNotAssets today, with spirited dialogue beginni…

RT @ChristopherA: … discussion continued in the afternoon session with testimony from former Federal Prosecutor and now @krakenfx General C…

I offered demo at the Wyoming Legislative Blockchain Task Force of DID/VC for Corporate Identity from POV of broader decentralized identity industry. Slides: https://docs.google.com/presentation/d/1ZyTwi6FJZPBN4K8MzCwRYuGtfXpjchcZsmTxUZQStKk demo Video: https://www.youtube.com/watch?v=1j_Vi0ePFGg&feature=youtu.be Testimony: starting at ~29:00 mark of

“Contributory infringement has been the central issue in the cases involving ‘peer to peer’ services such as Napster, Aimster, Grokster and Morpheus.” https://en.m.wikipedia.org/wiki/Contributory_copyright_infringement

Interested. DM me?

RT @page_eco: Fascinating: Moore’s Law predictions vs actual growth in transistor count.

by @datagrapha
https://www.reddit.com/r/dataisbeautiful/comments/cynql1/moores_law_graphed_vs_real_cpus_gpus_1965_2019_oc/?utm_source=share&utm_medium=ios_app https://t.…

🤔“Martians will be able to use lightning networks, but as Clark Moody points out, they have to take particular care to guard against fraud because of their distance from the center of hash.” by @dhruvbansal of @unchainedcap https://www.unchained-capital.com/blog/law-of-hash-horizons/

I will be speaking tomorrow at the Wyoming Blockchain Stampede at 2:20pm offering an overview of #SmartCustody and our new free book with best practices for protecting your digital assets: https://stampede.sched.com/event/4ccae8d834a7adf204480d3b2d9ee889 @wyohackathon #WyoHackathon @sched

You are correct that Shamir Secret Sharing (SSS) has the weakness that keys have to be restored on a single device. There are, however, emerging forms that support Schnoor multisig & VSS. @BlockchainComns is working on this. https://github.com/WebOfTrustInfo/rwot9-prague/blob/master/topics-and-advance-readings/verifiable-secret-sharing.md

We are also working on offline airgapped solutions for restoring #SLIP39 based Shamir Secret Sharing keys. I am demoing this at today’s @wyohackathon

Sat Sep 21 17:45:06 +0000 2019

If you are interested in helping financially supporting @BlockchainComns research efforts on these topics & #SmartCustody, as well as our advocacy for changes in regulations like this Wyoming #KeysAreNotAssets Bill, you can use our @BtcpayServer https://btcpay.blockchaincommons.com

RT @zooko: Awesome! This isn’t censorship — I prevent you from hearing something against your will. This is curation — I offer you the opti…

Yes 💯! “the world is a smooshier than that”. Smart kid. https://twitter.com/RanaAwdish/status/1175155636738428940

RT @LulaEDUcate: Learning about #SmartCustody at the @wyohackathon! @ChristopherA This is fascinating! #Bit38 is one of the largest loss…

RT @LulaEDUcate: #ThePowerofChecklists for redundancy seems to be the key, both literally and figuratively. Proper design & understanding y…

RT @LulaEDUcate: @ChristopherA also discusses the questions that we should ask #Custodians, while they may not be able to answer specifical…

RT @LulaEDUcate: @ChristopherA offers a free book. The links are below. There is so much education at @wyohackathon! Very food info for o…

RT @LuggageDonkey: very good description of


RT @LulaEDUcate: Simple cold storage, @ChristopherA discusses Base Scenario. Some of the errors that are most important are : Key fragility…

The fundamental problem when identity become bootstrapped solely with government identifiers… https://twitter.com/JoeAndrieu/status/1175536397245145089

This was deleted & changed to better language. For context see #KeysAreNotAssets thread.

Replying to @lex_node

Because everything a prosecutor needs can be done with public keys. See testimony on Friday from former federal prosecutor in Friday’s testimony — expecting due care of private keys is dangerous.

Replying to @lex_node

Private keys can be used to fake evidence. Private keys are hard to keep secret if transferred. Private keys can protect more than the assets under judgment and do more harm if exclusive use is violated. Everything a prosecutor needs can be done with public keys.

While at #UWYO I saw many statues and artwork of cowboys on bucking’ broncos. But my favorite is this cowgirl breakin’ through:

In Wyoming last week I kept being asked about Google’s so-called Quantum Supremacy news. This was ~50 qubits with no error-correction. To break elliptic curve crypto you’ll need several thousand error-corrected qubits, which may mean millions of qubits total. No need to fear yet!

Best article by an quantum computing expert I’ve seen so far is Scott Aaronson’s “Supreme Quantum Supremacy FAQ!” at https://www.scottaaronson.com/blog/?p=4317

RT @ChristopherA: Best article by an quantum computing expert I’ve seen so far is Scott Aaronson’s “Supreme Quantum Supremacy FAQ!” at http…

RT @CaitlinLong_: Highlights from #WyoHackathon 2019! Kids rule, hardware wallets fly and #Wyoming wins! 🤠 Thanks to everyone who made it s…

@Cartazon DM me?

RT @ksedgwic: @wiz @ChristopherA @devrandom01 @BobMcElrath @DominicBreslin @adam3us @pavolrusnak @BlockchainComns @wyohackathon https://t.c…

Replying to @ksedgwic, @wiz, @devrandom01, @BobMcElrath, @DominicBreslin, @adam3us, @pavolrusnak, @BlockchainComns and @wyohackathon


RT @peterktodd: It means nothing because Google’s quantum breakthrough is for a primitive type of quantum computing that is nowhere near br…

Replying to @ayushgupta0610, @JustinMoon, @Appelcline and @BlockchainComns


Replying to @ayushgupta0610, @JustinMoon, @Appelcline and @BlockchainComns

https://twitter.com/peterktodd/status/1176313278114476032?s=21 @peterktodd

Is the paper available online yet?

Anyone know a good example of git repository http://CONTRIBUTING.md that says that all git commitment to the repo must be PGP signed and signature means acceptance of Open Source License & Contributor Agreement in the repo? Or maybe acknowledging that in PR adding name to list?

#qotd “Ancient horse’s asses control almost everything and CURRENT Horses Asses are controlling everything else.” — @BillHolohanSolr https://twitter.com/BillHolohanSC/status/1177631604186996737

