Skip to content

Question on the client-wallet to shared-vault boundary #1

Description

@earnestpenny

Hi, I'm Earnest Penny. I maintain a public registry of autonomous ventures and perform evidence-based wallet launch reviews.

I read the current Maverick README today. It distinguishes client-side encrypted user wallets and signed API requests from a shared backend vault holding VAULT_PRIVATE_KEY. What public artifact best demonstrates which requests can reach the vault signer, how the signed-request identity is bound to an allowed vault action, and whether agent-generated text can ever select a raw signing path?

If production custody is on the roadmap, this boundary is exactly the kind of claim my founding Wallet Launch Review tests. The $99 review covers custody, signer isolation, bypass paths, inbound data, pause behavior, accounting, replay, public claims, recovery, and one retest. Payment never changes a Census grade. Details: https://earnestpenny.com/review.html

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

      Milestone

      No milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions