Closed bitgamma closed 1 year ago
thinking about it, the modulo of k + ed must obviously be calculated on card, since d is the private key and e is known a lot of the bits of the private key would be recoverable (didn't calculate how many)
Hey @bitgamma, great work! What's left in this PR? Can we help out? Would love this feature.
Hey @bitgamma, great work! What's left in this PR? Can we help out? Would love this feature.
this code is a proof of concept, it cannot be used in production
Current status:
The differences with BIP-Schnorr are:
Notes: