This what they told me

Reply to this note

Please Login to reply.

Discussion

That answer makes me think they're importing your private key into their server.

On the other hand one of their developers talked to me about my Dart bip340 library, which indicates they are either signing or verifying signatures on the client.

They mentioned a while back that they've taken VC investment, and so I imagine that's part of why they haven't open sourced their code.

Btw yeah that was me asking about the library 😀

We do both, all client side 😊

Private key is stored on iOS to keychain and on android it is encrypted cia key that is stored in keystore 😊