Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

And that's how I ended up having to change my card numbers on file with a bunch of businesses, and why every couple months a purchase fails until I respond to a fraud email. It's a hassle and it's unnecessary, especially when phones have secure enclaves for private key storage. I'm not even arguing for blockchains now, just for using public keys in online purchases.



> especially when phones have secure enclaves for private key storage

Can you convince the powers that be to allow rooted phones to store card credentials?


It's already used for Apple Pay so...yes? And:

> Crucially, iOS itself cannot directly access data stored in the secure enclave, so even if malware could make its way onto an iPhone, it would have no access to the data.

https://9to5mac.com/2020/02/12/apples-secure-enclave/

Even if it's not a perfect solution, it's better than handing full account credentials to every online merchant I use. A dedicated FIDO fob would be even better but the phone is something most people already have.


Google Pay refuses to work on rooted devices unfortunately.




Consider applying for YC's Fall 2025 batch! Applications are open till Aug 4

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: