<oembed><type>rich</type><version>1.0</version><author_name>npub1tfk373zg9dnmtvxnpnq7s2dkdgj37rwfj3yrwld7830qltmv8qps8rfq0n</author_name><author_url>https://nostr.ae/npub1tfk373zg9dnmtvxnpnq7s2dkdgj37rwfj3yrwld7830qltmv8qps8rfq0n</author_url><provider_name>njump</provider_name><provider_url>https://nostr.ae</provider_url><html>📅 Original date posted:2022-10-07&#xA;📝 Original message:On Friday 07 October 2022 16:20:49 Dario Sneidermanis via bitcoin-dev wrote:&#xA;&gt; At the time, we understood we had at least a year from the initial opt-in&#xA;&gt; deployment until opt-out was deployed, giving us enough time to adapt Muun&#xA;&gt; to the new policies.&#xA;&#xA;Policies are a per-node decision, and cannot be relied on in general.&#xA;Full RBF has been the default in Bitcoin Knots for years, and de facto viable &#xA;for use on the network even longer.&#xA;&#xA;&gt; However, when reviewing the 24.0 release candidate just &#xA;&gt; a few days ago, we realized that zero-conf apps (like Muun) must&#xA;&gt; *immediately turn off* their zero-conf features.&#xA;&#xA;RBF deals with UNconfirmed transactions, not zero-confirmed (Lightning).&#xA;&#xA;&gt; I understand this wasn&#39;t the intention when designing the opt-in deployment&#xA;&gt; mechanism. Given this new information, do you see a path where we can delay&#xA;&gt; the opt-in deployment and find a safer way to deploy full-RBF?&#xA;&#xA;Full RBF has been available for users on an opt-in basis since at least 2013, &#xA;long before BIP 125 was even conceived of.&#xA;&#xA;&gt; We call zero-conf applications to entities that accept on-chain payments&#xA;&gt; from&#xA;&gt; *untrusted parties* and will sometimes deliver the paid-for product or&#xA;&gt; service&#xA;&gt; without waiting for the transaction to be included in a block.&#xA;&#xA;This is unsafe period. RBF does not make it any less unsafe.&#xA;&#xA;&gt; All of these applications are receiving incoming on-chain transactions for&#xA;&gt; which&#xA;&gt; they don&#39;t control the inputs, and performing a risk analysis to decide&#xA;&gt; whether&#xA;&gt; they are ok with accepting the payment without confirmation.&#xA;&#xA;This is nothing but a false sense of security.&#xA;&#xA;Luke</html></oembed>