-

@ Tim Bouma
2025-06-04 11:08:39
All of these card payment schemes boil down to securely protecting a randomly generated unique secret that is used to authorize a payment.
Where the ‘trust’ comes into play, is what can be done in conjunction with this random secret. That’s why you have to ‘trust’ the payment terminals - not to leak your secret, but also to transmit the amount you intend to pay.
The EMV (Europay Mastercard Visa) scheme partially addresses this problem with secure terminals that need to be certified, and mandating that merchants only use these terminals, but it’s still a big weak spot and point of capture in the system. If we are going to break free, we need to build from the ground up.
This is only another step in what we are building with bitcoin/nostr/lightning/cashu
nostr:note1sh2g0fjvj4fwfrc7zvdkzrv9ehdak7gwsrw7e5md29v5l4tlyh6s6xv8u4