This is a serious privacy concern and my opinion is that nobody should use the new WoS Spark wallet without being fully aware of the risks. ⚠

I crash-tested this myself, comparing a nostr:npub1jugar2agq6369p0l86razavs9shj2p6pscxecevs8j94ap37hkqsjlfc28 SDK Spark wallet with nostr:npub1hcwcj72tlyk7thtyc8nq763vwrq5p2avnyeyrrlwxrzuvdl7j3usj4h9rq and here’s what I found. 🪖💥

The first screenshot is an invoice from Breez, the second is from WoS. You can clearly see that the Spark address is only exposed in one of these. 👇

nostr:nevent1qvzqqqqqqypzpngkn0v0h4ghnc4g6jv0lsca8tswgzp9lu4c4p02xkwyg4dpql9gqy2hwumn8ghj7un9d3shjtnyv9kh2uewd9hj7qgwwaehxw309ahx7uewd3hkctcqyq0rtskrs68sw9cqn2zn497jyy7cnwya2cyhl2ugfuz4myz5s84dwzvff8m

Reply to this note

Please Login to reply.

Discussion

👀

Interesting. This is just with that WoS spark wallet though, right? Not the old central custody WoS ones?

That’s correct. Welcome back, BTW.

Thanks bud. Noatr is gonna boom town.

Good one!

nostr:nprofile1qqstu8vf099ljt09m4jvres0dgk8ps2q4wkfjvjp3lhrp3wxxllfg7gpzpmhxue69uhk6mnv9emrqmpwd9hszrmhwden5te0dchx76es9ehhyecym2km9 any information on when y'all are going to fix this?