There is one weakness in anon zaps that I just discovered. Since the list of relays is passed to the zapper, and the person is using filter.nostr.wine, their npub will be in the URL. Not so anon after all! πŸΆπŸΎπŸ˜‚πŸ«‚πŸ‘€

Reply to this note

Please Login to reply.

Discussion

So ..you are the anonymous zapper?! πŸ˜‚πŸ«‚πŸΆ

No! πŸΆπŸΎπŸ˜‚

πŸ€”

I just replied to the message with the name! 🐢🐾🫑

Here is a picture of me after finding out.

Lol! πŸΆπŸΎπŸ˜‚

I am talking about you, #[1] πŸΆπŸΎπŸ«‚πŸ’œ

πŸ‘€ F

Gotcha! 🐢🐾🀣 and thank you! πŸΆπŸΎπŸ«‘πŸ«‚

But i dont mind. Its just funny if peoples dont know πŸ˜„

That’s true! I just was curious how anon the anon is, and came across the weakness! πŸΆπŸΎπŸ˜‚πŸ«‚

But glad you told me. It might be good to know in future. Atleast i dont tell anyone that they are anon.

πŸΆπŸΎπŸ«‘πŸ«‚ it was a new discovery for me too!

Actually, this was one of the reasons I was a little hesitant about putting my npub in the relay url. My intuition was right! πŸΆπŸΎπŸ˜‚πŸ€£πŸ˜‚

Oh yeah. Did not think that at all. Well..

I dont even know why i added that filtered relay when im connecting 15 other relays πŸ˜‚

πŸΆπŸΎπŸ˜‚πŸ€£ NIP-42 will fix this! So it is a short term vulnerability!

Interesting. Do you know if private zaps have the same behaviour ?

Yes! But the info only goes to the receiver’s zapper. So it’s ok! 🐢🐾🫑

Very interesting. Good to know!

If you use amethyst you don't need to have the npub in the relay name anymore. I forgot what nip it was but it changed recently.

Yep! πŸΆπŸΎπŸ«‘πŸ«‚

nostr:note1zwtmvam6km79yjfjvxmlxlmxe9a06gz4yny6tnuyepmhzr5s3x4sam0pwk

A fair few apps now support the AUTH NIP, so it can be removed from the end.

Still need more app support however.

🐸 no more anon πŸ€”πŸ€­

No, just a temporary shortcoming of filter.nostr.wine. They are still ok if you don’t use it. If you have a special relay configuration that only you have, then still can be a problem! 🐢🐾🫑

So to bypass… remove my wine filter, then anon zap?

Yes! 🐢🐾🫑

Sneaky! Sneaky! πŸ¦Ήβ€β™€οΈπŸ¦‡

Don’t tell frog 🐸 this πŸ˜‚

β€¦πŸ˜†β€¦ but I already tagged him! Woops!🀣

Noooo πŸ₯·

Better yet - use a client that supports NIP-42 and then you can connect directly to wss://filter.nostr.wine πŸ€™

Yes! Temporary weakness! 🐢🐾🫑

#[2]

This is how anon zap from #[2]​ will tell me it’s him:

nostdress | DBG [NOSTR] published to wss://filter.nostr.wine/npub1m6gvtkek5sq3l82cfh7p3hs62ujxs6r8npre8m6jvvcm28utg05sde2e6g?broadcast=true: sent

🐢🐾🫑

Or the amount of sats is 210 ir 91.

πŸ€£πŸ˜‚πŸ€£πŸ˜‚πŸ€£πŸ˜‚

That too! πŸΆπŸΎπŸ€£πŸ˜‚