Open is not the same as looked at.
Notes that take a common claim about software or custody, state what evidence would support it, and read the public record against that. Each note gives questions to ask and the artifact that would answer each one.
New here? Open any note below and read its Start here section. It is written in plain language and needs no technical background. The rest of each note is the record behind it.
A note is a versioned, sourced document that follows one question. Every note has the same parts:
Who Can Move Your Bitcoin? Questions to ask about any way of holding it
Version 0.18, peer review draft. Comments on this version can cite the fixed v0.18 text; see the changelog.
A framework for reviewing a custody arrangement. It separates what a custody claim says from what the protocol enforces and what a deployment would have to prove. It works through a single-signature baseline and nine configurations, then the full custody lifecycle. It describes kinds of arrangements and names no company.
What Can You Check About a Software Release? Questions to ask about a published file
Version 0.4, peer review draft. See the changelog.
A comparison of release processes. It separates three checks: whether a change was public, who signed the release file, and whether another builder rebuilt it. It reads Bitcoin Core’s process beside the Linux kernel, Tor Browser, and the Debian archive, and it covers provenance records. It compares processes and does not rank them.
What Can You Check About an embit Release? The release note’s questions, put to one library
Version 0.6, peer review draft. See the changelog.
A worked example for one Bitcoin library that other projects build on. It records the file on the Python Package Index, the signed tags in the source repository, and the project’s written release process. It does not assess the library’s code.
Which Code Actually Runs? Questions to ask when software has more than one way to do a job
Version 0.3, peer review draft. See the changelog.
A note on fallbacks in software that makes or uses keys. It defines the selection between two ways to do a job, and the difference between code that is present and code that is reached. It reads two public records and states what the release checks leave open.
Corrections are wanted. That is the reason for the name.
One person maintains these notes. The drafting and the source checks are AI-assisted, and the maintainer reviews every change before it is merged. Each note states what was verified and what was not. Treat every statement here as a claim to check, not a fact to accept.
The notes, STYLE.md, and AGENTS.md are licensed under Creative Commons Attribution 4.0 International (CC BY 4.0). You may copy, adapt, and republish them, including commercially, if you give credit.
https://github.com/more-eyes/notes/blob/v0.18/who-can-move-your-bitcoin.md. A link to a tag keeps your citation fixed when the note changes.This repository moved from johnzilla/notes in October 2026. Old links redirect here.