a "pubkey" is published to the chain and, if it appears in the future, its a possible spend.

theres no way to tell if it is a real spend or not, unless you have access to the sending wallet.

it is prudent to ensure an Adversary that may be actively surveiling you is not able to access the wallet that sent you the output.

this is important to understand when using #monero.

Reply to this note

Please Login to reply.

Discussion

So you're saying you need to trust the person paying you to not be surveiling you?

no.

I'm saying the person paying you knows there's a "true" output on the chain and which one it is.

because they spent it to your key.

but if the output appears again on the chain they have no way of knowing if its a true spend of not.

so no surveillance happens.

but they can look at it and wonder about it. it is greater than zero information

maybe they're Chainanalysis and they have other data to correlate.

ideally we would reveal zero information right? the plan is to move to a system than reveals much less about the payee.

but this is just blockchain stuff, none of it is news.

Gotcha. So LN is strictly better in that regard with the possibility of a prism, or trampoline routing.

What about the other points STN raised? This is the only one I wasn't interested in talking about and the only point both of you replied to.

which "other issues" are you talking about?

the OP just seems to be about "cryptographic link to pubkey" and the implications...?