Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Epic: Authorization #9128

Open
6 tasks
iAmMichaelConnor opened this issue Oct 9, 2024 · 0 comments
Open
6 tasks

Epic: Authorization #9128

iAmMichaelConnor opened this issue Oct 9, 2024 · 0 comments
Labels
A-security Area: Relates to security. Something is insecure. T-epic

Comments

@iAmMichaelConnor
Copy link
Contributor

iAmMichaelConnor commented Oct 9, 2024

Areas for authentication:

  • The PXE should prevent apps from accessing other apps' secrets via oracle calls
  • The PXE should check whether the code about to be run actually does belong to a particular contract address
  • The PXE might need to call back to a user/wallet/dapp to ask "Hey, this contract address needs this capsule data to continue provide it at your own risk"
  • The PXE might need to convey to a dapp "Hey, I've simulated this tx and here are the details, here's what's going to be made public, and it's going to cost this much"
  • The dapp says to the wallet "Please sign this mysterious message".
  • The dapp says to the wallet "Please sign this mysterious transaction"

Tasks

Preview Give feedback
  1. 0 of 5
    C-aztec.js C-aztec.nr T-epic team-fairies
  2. T-feedback team-fairies
@iAmMichaelConnor iAmMichaelConnor added this to the TestNet milestone Oct 9, 2024
@rahul-kothari rahul-kothari removed this from the TestNet milestone Oct 11, 2024
@iAmMichaelConnor iAmMichaelConnor added the A-security Area: Relates to security. Something is insecure. label Oct 23, 2024
@github-project-automation github-project-automation bot moved this to Todo in A3 Oct 28, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
A-security Area: Relates to security. Something is insecure. T-epic
Projects
Status: Todo
Development

No branches or pull requests

2 participants