You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: docs/cardano/index.md
+1-1Lines changed: 1 addition & 1 deletion
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -6,7 +6,7 @@ title: Cardano secure workflow
6
6
# Cardano secure workflow
7
7
8
8
{: .note }
9
-
This section is intended for operators and developers who need a "cold" environment for low-level Cardano commands or stake pool operations. If you intend to run a "light" (browser plugin) wallet in the Frankenwallet, skip forward to the section on the "cool" Frankenwallet which allows restricted use on the Internet:
9
+
This section is intended for operators and developers who need a "cold" (= "air gapped") environment for low-level Cardano commands or stake pool operations. If you intend to run a "light" (browser plugin) wallet in the Frankenwallet, skip forward to the section on the "cool" Frankenwallet which allows restricted use on the Internet:
Cardano workflow, as "sandboxed" in the Frankenwallet — with judicious Internet usage, though separated from the owner's host software environment — follows the same pattern as it would for any blockchain: wallet packages maintaining funds, and crypto web sites to apply these funds to interactive use via the Internet.
18
18
19
-
## Light wallet usage
19
+
Though the user should be able to improvise their own Cardano workflow from the principles on the parent page [Cool environments](/cool), here are some use cases to help users get started right away:
20
20
21
-
### Avoid Internet search when selecting wallet software
21
+
##Light wallet use case: Eternl
22
22
23
-
### Workflow for recording wallet passphrases
23
+
➤ First, in your host environment, and according to recommended [use of the "scratch" file](/cool/#record-common-data), validate and record the following details for the Eternl browser wallet:
24
+
* the Eternl web site [eternl.io](https://eternl.io): comparing it to sources of information you trust (well-populated Telegram groups, X channel(s) followed by people you're connected to, community blog articles & forum postings, etc.)
25
+
* the Eternl **Browser Extension** linked from the home page: confirming also with other searches, and other measure of validity (e.g. the number of installations you'd expect from an industry standard wallet)
24
26
25
-
LIGHT WALLET USAGE - use cases, record keeping
27
+
➤ _(only when that's confirmed)_ Boot into the Frankenwallet, run Chrome, and open the installation link for the Browser extension.
26
28
27
-
## dApp usage
29
+
{: .important }
30
+
This precaution is to avoid cases where an Internet or browser app search for `Eternl`, immediately before its installation with no corroboration from other sources, could immediately offer a malicious fake that would lead to loss of funds if installed & used.
28
31
29
-
### Workflow for recording dApp passphrases
32
+
➤ Record and/or confirm the Eternl wallet passphrase.
30
33
31
-
difference betwen "Vault" applications and asset storage
34
+
{: .warning }
35
+
The "scratch" file that keeps your casual records, links, procedures, addresses, and account balances **cannot** be used to store your passphrases, because it require access from the host machine and therefore is encrypted with the [low-security password](/usage/security/#use-cases-low-security).. only the [high-security password](/usage/security/#use-cases-high-security) is suitable to encrypt your passphrases (as per [File encryption levels](/usage/security)).
32
36
33
-
---
37
+
At this point, if not already, you must therefore designate a file on your host machine to store passphrases and any other Cardano account private key information. You'll then use thie file for:
38
+
* recording (copy & paste, whenever allowed) the full wallet passphrase when it is created;
39
+
* keeping the spending password (or hint for that password) next to the passphrase;
40
+
* periodically verifying the passphrase via the Eternl UI or by importing into another wallet.
41
+
42
+
## dApp use case: Staking vault
43
+
44
+
This is a somewhat lower security requirement, since a security breach might affect the performance or privacy of a user's assets but not allowing funds to be stolen. An example would be the [World Mobile Vault](https://faq.worldmobiletoken.com/docs/faq-and-support/vault-support) which stores metadata about a user's funds without storing funds themselves.
45
+
46
+
These resources are meant to be managed similarly to wallets: so users should follow the above Light wallet use case procedure to record the generated login password and seed phrase in the high security password encrypted document.
47
+
48
+
## dApp use case: Cardano DEX
49
+
50
+
Since these web sites will automatically locate a user's funds based on the wallet that is active in the same browser (e.g. for Eternl, see [Setting up your DApp Browser account or DApp connection](https://wiki.eternl.io/en/2_user-guide/dapps)), the only essential step to prepare in your host environment before executing swaps in the Frankenwallet is:
51
+
52
+
➤ In your host environment, and according to recommended [use of the "scratch" file](/cool/#record-common-data), validate and record the URLs for all swap sites, DEX aggregators, or exchanges you might use.
53
+
54
+
You will then be able to launch these in the "cool" Frankenwallet without a spurious Internet search leading to a fake malicious DEX or phishing site.
55
+
56
+
{: .new-title }
57
+
> hint
58
+
>
59
+
> The URLs for all your dApps can be generously bookmarked, even on the browser toolbar, of the Frankenwallet browser without giving away any of your crypto activity as it would if done on your host machine.
60
+
61
+
Keeping these browser bookmarks for all commonly used staking, trading, and other dApp activity will keep your Frankenwallet off of explicit Internet search... and using all these sites _**only** in the Frankenwallet_ will avoid associating any of your crypto account activity with the "real world" identying activities on your host machine.
Copy file name to clipboardExpand all lines: docs/cool/index.md
+6-1Lines changed: 6 additions & 1 deletion
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -3,11 +3,12 @@ layout: page
3
3
nav_order: 70
4
4
title: Cool environments
5
5
---
6
-
# Cool environments (Internet restricted)
6
+
# Cool (Internet restricted) environments for light wallets & dApps
7
7
{: .no_toc }
8
8
- TOC
9
9
{:toc}
10
10
11
+
## Cool environment basics {#cool-basics}
11
12
12
13
If you have decided to go on with your Frankenwallet having restricted Internet access, rather than no Internet access at all, you will able able to use the applications in this section which depend somehow on Internet connectivity. Therefore we're calling this the **cool**{: .text-blue-100 } environment (since it's not quite cold).
13
14
@@ -89,3 +90,7 @@ Without habitually authenticating crypto links via Internet search (which you sh
89
90
> tip
90
91
>
91
92
> Over time your "scratch" file — encrypted in Libreoffice with your "low security" password for routine update on the host computer — will accumulate a list of trustworthy links that you can click into in the Frankenwallet for wallet downloads, software updates, dApp bookmarks, and anything you would otherwise risk a costly misdirection if you had to search for on the Internet.
0 commit comments