Silk Road forums

Discussion => Security => Topic started by: NewStem on April 06, 2013, 03:11 am

Title: Cryptobin.org
Post by: NewStem on April 06, 2013, 03:11 am
Do any of you have experience with this website? I'm about to make my first order and a vender requests the address information through this website, I'm just wondering if it's as safe as GPG (or at least safe enough). Would the etiquette be to post the code, then the password? I don't want my delivery courtesy of LE.

First order, woo!
Title: Re: Cryptobin.org
Post by: SelfSovereignty on April 06, 2013, 03:16 am
Never heard of it.  But no, it cannot be as safe as PGP.  I don't know why they're asking you to put your info through that site, but it sounds awfully sketchy to me...
Title: Re: Cryptobin.org
Post by: astor on April 06, 2013, 03:17 am
No, it's not as safe as PGP. The site says, "Password generation and encryption is achieved client-side using JavaScript and the AES-256 cipher." Have you reviewed the code?

One of the first things I look for when assessing a vendor is a public key in their profile. If they don't have one, I don't buy from them.
Title: Re: Cryptobin.org
Post by: NewStem on April 06, 2013, 03:19 am
There is no public key in the profile, so I suppose I'll keep looking. I appreciate the tip.