Why Nostr? What is Njump?
2023-08-21 13:23:34
in reply to

Alby on Nostr: It is true that you could technically make the commando permissions more limited... ...

It is true that you could technically make the commando permissions more limited... but since the point of the extension is generally to make payments, it’s a bit logical that this could be used to “drain funds from the node”.


https://github.com/getAlby/lightning-browser-extension/blob/master/src/extension/background-script/connectors/commando.ts#L84 - here is everything that you can do theoretically with the extension, so you can add restrictions for what you want to do if you want.

You can also make the rune expire after some time.

We hope that helps!
Author Public Key
npub1getal6ykt05fsz5nqu4uld09nfj3y3qxmv8crys4aeut53unfvlqr80nfm