LiskArchive / lisk-ui

🖥️ Lisk user-interface submodule
https://lisk.io/
GNU General Public License v3.0
24 stars 35 forks source link

All transaction signing should be done locally #70

Open karmacoma opened 8 years ago

karmacoma commented 8 years ago

Courtesy of @karek314

Currently transactions are being signed at backend which is poor security design in current use case, especially when it comes to login.lisk.io which is used by most users. It relays on one central power. Im aware if there will be provided bundled packages this doesn't matter much anymore but still it will be issue if we decide to use online wallet like login.lisk.io it's still better to do not send passphrase anywhere.

ghost commented 7 years ago

I think this one should get a little higher priority.