TFTC: A Bitcoin Podcast - #745: The AI Approval Layer Is Fake with Zach Herbert

Episode Date: May 13, 2026

Marty sits down with Zach Herbert to discuss how Foundation Devices is building a microkernel operating system to bring Bitcoin-grade security principles to the AI era, why current AI permission layer...s are fake, and the urgent need to reinvent personal computing before autonomous agents overrun legacy operating systems. Zach on X: https://x.com/zherbert Foundation Devices: https://foundation.xyz/ GitHub: https://github.com/foundation-devices Presentation: https://x.com/OPNEXT2026/status/2052465451804836101 STACK SATS hat: https://tftcmerch.io/ Our newsletter: https://www.tftc.io/bitcoin-brief/ TFTC Elite (Ad-free & Discord): https://www.tftc.io/#/portal/signup/ Discord: https://discord.gg/yHGkvYxdqT Opportunity Cost Extension: https://www.opportunitycost.app/ Shoutout to our sponsors: Bitkey https://bitkey.world/ Aven https://www.aven.com/bitcoin CrowdHealth https://www.joincrowdhealth.com/tftc Unchained https://unchained.com/tftc/ Salt of the Earth: https://drinksote.com/tftc Join the TFTC Movement: Main YT Channel https://www.youtube.com/c/TFTC21/videos Clips YT Channel https://www.youtube.com/channel/UCUQcW3jxfQfEUS8kqR5pJtQ Website https://tftc.io/ Newsletter tftc.io/bitcoin-brief/ Twitter https://twitter.com/tftc21 Instagram https://www.instagram.com/tftc.io/ Nostr https://primal.net/tftc Follow Marty Bent: Twitter https://twitter.com/martybent Nostr https://primal.net/martybent Newsletter https://tftc.io/martys-bent/ Podcast https://www.tftc.io/tag/podcasts/

Transcript
Discussion (0)
Starting point is 00:00:00 you've had a dynamic where money's become freer than free if you talk about a fed just gone nuts all all the central banks going nuts so it's all acting like safe haven i believe that in a world where central bankers are tripping over themselves to devalue their currency bitcoin wins in the world of fiat currencies bitcoin is the victor i mean And that's part of the bull case for Bitcoin. If you're not paying attention, you probably should be. Zach Herbert, can't believe it's been six years, sir. Yeah, the world is very different from when I last came on.
Starting point is 00:00:44 Yeah, I mean, we were just talking about it, too. I think maybe we start there because it's something I'm fascinated about and something we were just talking about. You've noticed that we're leaning into it. You said that you're leaning into it personally. And on the business side, at Foundation, I think the AI wave that has hit over the last two years is really, I mean, just from observation and experience, it has founders thinking differently about building businesses, particularly within Bitcoin. And I'm just curious for somebody working on a hardware and security product, what is the best approach for you guys or how have you approached it? Because there's many considerations I feel like that your team would have to take in compared to ours, which is just media where we're not really securing data. And so we can be a bit more liberal, but I feel like for you guys, it can certainly help.
Starting point is 00:01:43 But you have to, correct me if I'm wrong, have some guardrails to make sure that everything's copacetic at the end of the day. Yeah, I mean, the AI stuff has been incredible. And I wish we had had it when we started the business because it's allowing us to move so much faster than we would have otherwise. It's still getting better at the low-level embedded firmware and drivers and operating system stuff. So it's still not that great there. Improving every day, obviously, with every model. But like the pace at which we're able to start adding new features to our new devices and software and everything is insane. But I mean, of course, it has us very worried about the security side of things.
Starting point is 00:02:27 And we have, I think, I don't know if it's a unique point of view, but I think when I hear the crossover between Bitcoin and AI, I know that's becoming very topical. uh a lot of bitcoin podcasts and uh you know i've heard i've heard this this intersection of bitcoin and ai and like what does that mean and typically what i hear from that is something like bitcoin or lightning powered payments right being like the ideal uh source of uh you know money transfer between the ais which was a concept that is probably is over 10 years old from like the original 21 Balaji machine payable web, baby machine to machine payments, which was so long ago. I mean, that was maybe like 20, 15, I think. Yeah. It was, it was in the depths of the bear market when they were working on, on that and then ended up pivoting to earn and selling to
Starting point is 00:03:22 Coinbase. Um, but what we think about now is like bringing our Bitcoiner principles and point of you to securing AI. And I think that's like what we're most excited about at foundation right now. Cause if you think about it, I mean, we started with, with just the Bitcoin hardware wallet back in 2020. And when, when I came on, I think you were the, I think you're the first podcast I ever did, which I remember being so nervous for, cause this was like, we were just a few months into the company and I never done like a podcast before. And I think about what I was talking about then it was, you know, open source hardware. We were doing the air gap QR codes. We were just doing a Bitcoin only hardware wallet. And those same like security principles that we have done for
Starting point is 00:04:09 Bitcoin and other great companies right in the Bitcoin space too, where you want to, you want to have a human, like a person know what they're about to approve. Right. And then explicitly authorize that transaction in a computer environment that they trust that's effectively what a bitcoin hardware wallet is and that's effectively like the kind of tech that we've been building right since 2020 and i think you could bring those exact same principles to the ai side of things and so when i think and when foundation thinks about like you know the ai stuff in the crossover yeah there's there's enormous challenges with the security side and we all feel it right now as users uh you know you're you're mashing the approve button or you're just turning
Starting point is 00:04:57 off the the permissions and clod or gpt and just letting it do its thing uh we think about like how can we bring our bitcoin or principles after years of building uh hardware wallets and and expand that beyond specifically bitcoin approvals and maybe take that like to the entire ai world as well so it's like bitcoin uh principled security but trying to bring it to like the broader uh tech space so i mean just off the top of my head as you're explaining that so when i'm thinking of bitcoin hardware you mentioned like air gaps so when we're when we're trying to secure bitcoin and create a private public key pair i mean the the way the the safest way to do it is to have an air gap device you create it offline and um you you make sure that it's not connected
Starting point is 00:05:46 to the internet so the the main goal is isolating the hardware from the the broader internet and i guess when it comes to bringing those bitcoin principles to ai uh how is that how do you see that being accomplished i mean you before hit record we're talking about maple obviously they have trusted execution environments uh in the enclaves and this is something that i'm focusing more and more on because i think people are beginning to realize like hey open claw and odd co-work and gpt are incredible but as you use it the more and more you use it the more and more becomes ingrained in your business you're like how much information am i leaking to these frontier models and the companies that run them and am i comfortable with that and i think
Starting point is 00:06:35 it's a massive problem set that needs to be solved and i think ultimately will be solved if we're going to do that i think we could see ourselves hitting a point where people just get too uncomfortable doing this and um essentially giving their personal business lives over to the ai overlords at anthropic and open ai yeah i mean it's it's tough because if you don't use it you're not going to be able to compete and so like if we had foundation didn't use it we would over the coming years need to hire huge numbers of people and everything and i want to keep the team small right i want to i want to use this uh technology as leverage so that we can do a huge amount with a with a small team uh and i think the privacy stuff is very important and i think
Starting point is 00:07:21 there's great companies working on the privacy side of things like maple you know like you mentioned and so i think our perspective is less about the privacy and more about like you have a technology that is probably going to be i don't know how you equate like the intelligence to human intelligence it's it's hard to equate it then you get into like the philosophical view you have a technology that's like uh more powerful than humans when it comes to computer use computer security right you have that mythos model from last month from from Claude and it's not even available to anyone yet. And people are trying to figure out, is that hype? Is that, is that overhyped? Is it real? I don't know, but I think we can see that the trajectory
Starting point is 00:08:10 that the space is following. And so I think like the really interesting question that we were not thinking about until really like January. And so I haven't talked about this anywhere, really just gonna share my thoughts with you in real time and like kind of give you a little preview as to what we're working on right now you know within the company but it's like how do we constrain or contain these ai models so that you can use them to their full capabilities uh but that they ultimately answer to a human authority, right? Like it comes to you for any crucial type of approval. So maybe, you know, if you wanted to, let's say you were like investing in a portfolio company, right. Or, or you're paying, if you're paying, or, you know, if you're doing a new
Starting point is 00:09:04 investment, you're sending a million dollar wire transfer or even better example, Bitcoin transfer, You want to approve that. You want to know exactly what you're reviewing and approving. But if you're just paying an invoice for the podcast to a vendor, and it's a vendor that you've paid before, and it's an invoice amount that's roughly the same amount, and it's 30 days from your last invoice, you probably want the AI to be able to just pay that for you. And so I think right now what what where we see the opportunity and we also see like the biggest challenge is that like with how everyone's using AI today is that the place where it's asking you to approve things is the computer or device that the AI is running on itself. So you're like doing all the approvals inside the blast radius of the device or devices that the AI is either running on or has access to. And that's crazy. Like, I don't think that that's going to work at all long term. And we're already seeing them. You could point to all the crazy stuff happening.
Starting point is 00:10:10 You could point to like Amazon calling emergency meetings because their employees kept taking down their AWS environments or, you know, all the stories on X people deleting all their email. It may have happened in the last 12 hours with Coinbase. That's what they're blaming it on. Yeah, I mean, they said it was an AWS outage, right? But they also said that, what was it? Product managers pushed the prod. Yeah, exactly. And so I feel like we as humans, we're building this extremely powerful technology that in some instances is more powerful than ourselves.
Starting point is 00:10:47 and i don't see anyone uh working on ways to contain it like i don't see anyone working on on like the the containment is is about politely asking the model to please follow the instructions you know please please listen to me and we're going to do all this training we're going to put all these kind of guardrails in but it ultimately comes down to please listen to me and what we want to do is like force it to listen to the humans and force it to uh deliver uh approvals right or or requests to approve certain actions to the human where we can like review and approve them and it starts to look a lot like the same process that you would uh do to review i mean different technology under the hood but the same kind of user experience process of like let me review
Starting point is 00:11:39 and approve this bitcoin transaction on trusted hardware yeah and that that's the uh again i've i've said this many times and the listeners may be tired but i will continue to beat the drum it's equally unnerving and exhilarating unnerving because of everything you just described but exhilarating because it's it's somewhat of a still a blank canvas and there's so much to be done in terms of creating these user flows that that give you the confidence that you're not borking your system or doing something that is going to be detrimental not only to your business but to your customers as well and that we're just like in that weird amorphous period where the models are still progressing because that's that's a hard thing right because this thing
Starting point is 00:12:24 these things are still progressing at a pace that is extremely hard to keep up with and so you're just trying to keep up with that pace but at the same time you're trying to build the guardrails in parallel and i feel like every three weeks or three months i'll build a system and become not depend on it become comfortable with it and then something is released it's like okay i gotta rip this out and put this in how does it affect everything else i've built in the context and conditional um approvals that that i thought i had before it's just it's uh discombobulating to to a certain degree yeah and i i think that we i don't think the message should be like handicap yourself in in the search for privacy and security i don't think i don't think that's
Starting point is 00:13:14 the message and i think right now um if we're using ai we're faced with like a choice and when it comes to privacy i think there's good options you know what like you can you can use ai services or providers or you can even do local models i mean it's hard to get uh it's expensive at least to get the uh you know whether it's a mac studio with a ton of ram or the nvidia hardware the framework desktop right there's there's local models are pretty good uh or you can use one of these in tee style right type things or you can use i think there's like venice right where it can um gives you some privacy as well uh but you still have that huge trade-off with security You have the big trade-off of, like, I want to go and if I'm going to use these tools, you want to give it as much context as possible.
Starting point is 00:14:05 You want to connect it to everything. I've been kind of building a, like, a company knowledge base internally where we ingest, you know, all the data from all the different company tools that we use so that we can reference decisions on the fly. We can look anything up. We can give the AI models that kind of context. But the challenge is that once, as it stands right now, like when you give Cloud or Codex or whatever tool you're using, you give it the credentials for those tools, whether it's MCP or CLIs or whatever it might be, it now has full access. And any permissions it's asking you is just politely asking you permission for something that it already has the capability of doing, right? So when you actually connect it, like if you connect Claude to Gmail, right, it has full capabilities to read and send all your emails, everything. And then you could go into the Claude app and you can choose the settings of, you know, let me mark this as needs permission, mark this as, you know, you don't need permission, you're allowed to just go take action.
Starting point is 00:15:19 But that's all Claude side. So the entire AI space right now, like every kind of permission approval, like the entire approval layer is all fake. Like it's all fake. It's just trying to make us as the users feel comfortable that it's coming to us to ask for permissions. But if it's asking for permissions for something that it already has the capability to do, like that's a huge problem. and this is going to be a problem that has to be solved over the next couple years otherwise i think it is going to uh significantly hinder adoption because it's going to be a total shit show as more and more things break and so how do you think we solve that this is probably the cryptography
Starting point is 00:16:04 come into it like because you can imagine a world where it's like hey i need permission to do this and i actually can't do it unless you sign a message that allows me to broadcast the and what for using bitcoin analogies here to not only broadcast the transaction but broadcast the command to go do a certain thing on gmail or something like that yeah so i think it's a longer journey and i actually think it's it's something about like um trying to distill it as much as possible it's like we almost need to reinvent the whole idea of of what a personal computer is because if you think about it like right now you have mac windows linux you have ios and android and that's basically it you have these uh five different computing platforms and at least on the
Starting point is 00:16:51 mac side there it's it's like the same code roughly for mac os versus ios i mean there's there's a lot of nuances but it kind of comes back down right to the same uh code base and then that all comes back down to like unix type operating systems from what we're talking like 30 years ago 30 plus years ago and then uh you look at like linux for example within the linux kernel there's like over 30 million lines of code and so when we're dropping these ais into these monolithic operating systems that are kind of built on on top of the previous code over decades we're dropping them into one an environment that just has huge attack surfaces so i think that's like one thing and attack surface is like a thing that a term that bitcoiners know right because that's how
Starting point is 00:17:45 bitcoiners evaluate oftentimes hardware wallets they'll say like i want to use a bitcoin only hardware wallet right i want to use something that with a lower attack surface with you know the smallest amount of code possible like on the hardware wallet or on the device and so we're running these ais like the models the the applications the harnesses the agents like it's running on these very old school operating systems that everything else runs on and the attack surfaces are enormous so i think like that's one problem but the other big problem is that the os has no way to distinguish between a human user and an ai agent so like you have your screen right you have your uh your mouse you have your keyboard and i mean that model of like
Starting point is 00:18:30 the desktop and the files like that goes all the way back to what is it like um like xerox park with apple and i i don't know who took what first right but where they saw the mouse and they have like the desktop and then obviously windows so like the operating systems that we're using to run all these ai agents and tools they don't know if it's a human user or an ai user so like the way that clod and now codex are doing computer use is that they're just taking control of the mouse and the keyboard and now codex can take control of the mouse and the keyboard on like a mac even when the window is not on the foreground so it can just go do all that stuff or like you're giving it full control over a um a chrome browser or something and it's just taking control
Starting point is 00:19:17 uh and so i think that the right answer is to rebuild all this stuff from scratch yeah well i mean yeah multiple companies are like so i i in january i think that's when they released co-work claude did and i used it and i saw it like using my computer and i was like after an hour i was like all right remove permissions to do anything that scared me And then luckily I saw Claude bot blowing up. I was like, okay, I'll put, I'll put, uh, I'll put my, uh, Claude in the cloud and give it its own server and I'm not going to give it access to my machine. I'll give it its own machine and feel much more comfortable that way.
Starting point is 00:19:57 It's that point. Like once you understand, you can see that these things are using your computer and your computer is none the wiser as them using it and it has access to all this stuff. It's incredibly scary. And then to your point that we have to redesign this, I think I completely agree and i think i'm actually a layer above you and i've been talking about a layer above you for months now and i'm really interested to dive down to the protocol level stuff because
Starting point is 00:20:22 it's something i'm more ignorant about but one thing that's become clear to me is like the form factor of how we interact with the internet is changing right before our eyes like i'm pure voice to text now voice to voice with my ai systems and it's like if i get frustrated if i to type now or if i have to point and click i like to hit the only typing i like to do is like option space bar begin talking to super whisper uh and it's become clear to me that like uis as we know them particularly within browsers are going to be rendered unnecessary you can project any ui that you want or that you need something that's specific to you using these tools in the future And so like on that layer, on like the UI app layer, like I think we're just going to go to a world that's like purely API agent to agent talking, pulling information, distilling information, presenting information to you.
Starting point is 00:21:17 But when it comes to the protocol layer stuff, I'm completely ignorant. Like, how do you even rebuild that? yeah so i think um well firstly we started to do it without realizing which is uh pretty interesting like so with our with our new device passport prime which is like our third generation you know we don't even call it a hardware wallet we're actually not sure still what to call it like we've used different terms like um personal security platform uh personal security device uh so we're still i think working on like how to properly define it but we we kicked this off in uh in 2022 we kicked this project off at the end of 2022 so
Starting point is 00:22:02 we raised like a seed round for foundation in the summer of 2022 and we're fully closed up with everything by uh by winter early winter and then we just started working on this new operating system and we call it a key OS. And before we started working on the new operating system, my, uh, my co-founder and I can, who's our CTO have been dreaming about like a next gen operating system since, since we started the company in 2020, like we were having conversations about, Oh, what if we could do a phone? You know, what if we could do like all these computer devices and it was my first time as i'm a first time startup founder right and so i think you can get a little carried away like months into starting the company and we're like oh yeah we could do a
Starting point is 00:22:52 phone we could do all this stuff i don't think we really knew how hard it is to like build hardware right and ship hardware and and scale that up uh and so we were very like wide-eyed and bushy-tailed and and just doing a lot of brainstorming and you know talking about like well what could we make And what we basically settled on as our dream operating system was not a monolithic kernel like like Linux that I mentioned, which is like 30 million lines of code and like everything is part of the kernel. Like every driver that's supported is in there, like literally everything is in there. It's crazy is the idea of something called a micro kernel. And so I would argue that not only is the microkernel architecture, I mean, the right approach for what we did, and I can talk about like Passport Prime and Kiosk and like why we did a microkernel. um but about a about a month ago i sat down and i asked all the different ai models you know if
Starting point is 00:23:51 you could build your dream operating system that would allow you to like work unobstructed but kind of keep you contained right where uh you don't have direct access to all the keys or the creds you have to go ask for approval for important actions like what would you build And they all gave us the same answer, which was a microkernel operating system and described something very similar to what we had built over the last three plus years for Passport Prime. And that was like an oh shit moment for us because we built it like specifically for Bitcoin and for securing things that are important to Bitcoiners. We say secure your entire digital life. So like Bitcoin, of course, 2FA codes, like six digit codes, security keys, you know, kind of like YubiKey style security keys, files. We have, you know, like almost like a hardware encrypted flash drive, other seeds that you use for other apps, like all this important stuff being stored on the device.
Starting point is 00:24:59 But the reason why we want to do a microkernel, which is basically like this tiny core of the operating system that has a very small attack surface, and then where everything else is an app in the operating system. So like everything's like a driver, which, which, you know, allows us to, you know, connect to a certain peripheral, like a screen, right. Or, you know, any kind of anything you, you have on the circuit board or something you might plug into the device, like those drivers are in user space. Those are apps. They're not even in the kernel. So the kernel for Kiosk is less than 9,000 lines of code right now. so it's like yeah it's like order of magnet like orders of magnitude i don't even know how many that is like you know four or three something like that yeah and and we're not the first ones
Starting point is 00:25:58 that there are other micro kernels that are out there there's like one called scl4 which is a little bit more academic it's like a formally verified micro kernel but no one is shipping these in consumer hardware right now because it's really hard to do a new operating system And so we started to do this new operating system in 2022 because we wanted to build something that would allow you to secure your entire digital life and importantly, install apps on it to customize what you want to do with it and enable developers to build apps for it. But each app like needs to be in its own sandbox and can't talk to other apps. Otherwise, that would compromise the security model of the entire device. And so we want to build like the open app ecosystem to be able to keep things on like offline secure hardware, whether it's Bitcoin or all this other stuff. And so we started building this OS in end of 2022.
Starting point is 00:26:53 And so I. This was like before we even knew what I was. and i think that this microkernel primitive is really powerful and uh we can start to use that over time to like uh to contain the the ai as well but i'm happy to you know dive more into all like the actual like tech and stuff behind it because like you said most people i think are focused on the the upper layers right like the user experience or like you said like the ui that's going to dramatically change like kind of beaming uis or um the ai kind of making you a ui in real time uh everything's going to be like like you said api based i i completely agree
Starting point is 00:27:37 with all that as well but it's kind of interesting because like this was also a kind of similar to how when i came on in 2020 it was all about you know open source hardware being the the foundation of this, this Bitcoin powered, I think we use the term like decentralized internet back then. And I think our heads have always been very much on like that, that base layer, right? Like, like where the software meets the hardware stack. And for us, that's expanded beyond like the hardware stack itself. It's also expanded into like the OS layer. So freaks, this rip of TFTC was brought to you by our good friends at BitKey. BitKey makes Bitcoin easy to use and hard to lose. It is a hardware wallet that natively embeds into a two or three multi-sig. You have one key
Starting point is 00:28:25 on the hardware wallet, one key on your mobile device, and Block stores a key in the cloud for you. This is an incredible hardware device for your friends and family, or maybe yourself who have Bitcoin on exchanges and have for a long time, but haven't taken a step to self-custody because they're worried about the complications of setting up a private public key pair, securing that seed phrase, setting up a pin, setting up a passphrase. Again, BitKey makes it easy to use, hard to lose. It's the easiest zero to one step, your first step to self-custody. If you have friends and family on the exchanges who haven't moved it off, tell them to pick up a BitKey. Go to bitkey.world. Use the key TFTC20 at checkout for 20% off your order.
Starting point is 00:29:04 That's bitkey.world, code TFTC20. All right, freaks. You know me. You know I don't take sponsor money from products I wouldn't use myself. So listen up. The Avon Bitcoin Visa card is one of the most interesting things I've seen in the Bitcoin lending space in a long time. Here's the deal. You can get a line of credit up to a million dollars backed by your Bitcoin without selling a single sat. No gains, no annual fees, no minimum draws, and your Bitcoin is custodied by BitGo, which is one of the most trusted names in digital asset security. Avon never lends it out. There's no rehypothecation. You stay in control. And guess what? You can lock in a fixed rate for up to 10 years that's 10 times longer than most lenders out there or go interest only for up to five years
Starting point is 00:29:45 rates start at 7.99 apr for a product that lets you keep your stack and still access liquidity it's hard to beat i mean the duration in the rates is the best i've seen in the market to date you also get two percent unlimited cash back every time you use the card spend fiat keep your bitcoin the whole game if you've been stacking for years and you need liquidity without triggering the taxable event this is worth a serious look go to aven.com bitcoin that's a-v-e-n dot com slash bitcoin check it out and let's i guess let's dive into it because like again trying to because that's going to be the hardest problem right like because we've you mentioned area mac os ios um windows linux if stuff's been around for decades the whole for lack of a
Starting point is 00:30:35 a lack of a better term i think the whole digital economy has been built on these systems in one way or another uh and the thought of transitioning away from that like the switching cost and the user experience and uh how do you actually approach it from a technical level because the way you're describing it seems like okay we built these systems obviously inarguably they've been incredible for humanity but in a world in which robots are emerging becoming smart and we are commingling with them in the digital world they are insufficiently secure hopefully just in the digital world right on the robots the physical robots are coming too yeah um and so yeah kind of how do you begin to take bites of this apple and like you said
Starting point is 00:31:23 The microkernel seems like a good thing, but the modularity and making sure that everything is siphoned off from each other, can't communicate, and how hard is that? And what is the possibility of actually successfully doing that? And maybe it's ultimately 100% because it's 100% necessary. And whether people realize it now or later is the big question is we can learn it now and rebuild now, or we can learn the hard lessons of letting these things run wild on the operating systems that exist today and learning the hard lessons down the line. Well, I think the most important thing is to build something opinionated with a specific product that already works. And this has been the thing that's plagued the operating system world over the last, I mean, you could probably say decades.
Starting point is 00:32:25 Because if you go and you start looking on Wikipedia or searching, ask your AI, how many operating systems are there? I mean, there's dozens of stuff that's been made. and there's also microkernel stuff that's been made and there's some really cool projects that we took inspiration from back when we started building kiosk in end of 2022 like one of them is did you ever have bunny on the pod i think at one point to talk about um that is like precursor be trusted project said no no no no he's like a he's like a hardware hacker guy he did he did a few bitcoin pods like years ago um but anyway he he's like famous in the hardware hacking world and he has a uh a project that he was he was kind of showing off to bitcoiners probably in like the
Starting point is 00:33:14 i don't know if it was 2021 or something like that uh but he was working on this microkernel operating system called zeus as part of this like it looks like an old school like blackberry type thing his device that he was working on and that was like a hardware um like crowdfunded open source hardware project and then there's also i think jeremy soller uh who was also doing some of the bitcoin podcasts back in the day talking about his operating system called redox he's the lead engineer at system 76 uh which is also a rust microkernel operating system so those are two and and there's a bunch of others that have happened over the years that never get shipped on anything and i think the reason is because they're more like academic
Starting point is 00:34:04 or like passionate open source projects but they're they're putting that like they're putting out that code and it's going into a github repo somewhere and it has a lot of potential but it's like never getting shipped on real devices and so we listened to those podcasts and and and as they were kind of approaching the bitcoin community back in the day and we got really excited about it and we actually started building on um originally on this zeus uh microkernel core uh which was like a open source github project and we've over the last three years diverged significantly from like that open source project to the point where it's like a basically like a completely different um you know project it's specifically designed to run on like the passport
Starting point is 00:34:58 prime hardware as well we ported it from like risk 5 to arm so that it could run on actual like security chips that we could buy and everything but i think like the first my first like long-winded answer to that is that if you're trying to do this you you can't just like make a cool os concept and like post it on github and say i have this awesome operating system concept it has a lot of potential it could be used for because that's just like step zero right like the hard part is actually getting it on to like a device that you can ship to customers like that people actually buy and that that is can be used and then when you're doing an operating system from scratch or mostly from scratch you have to build support for like every single chip and every
Starting point is 00:35:49 single peripheral in the hardware and that takes a long time to do especially if you're a small team or at least it did and i don't know now with ai maybe it could be a lot faster but um so that's that's like how i would first answer your question right where it's like it can't be an academic project it can't be like an open source uh hacker like or interesting project it has to be something that you actually get out to the world and that you ship right because unless you ship it no one's building anything for it like it's it's it's a it's a hardcore hobbyist type thing and i think that's been the big problem in my opinion with all these interesting operating system concepts over the last few years and then also like over the past decades which is a lot of really cool
Starting point is 00:36:35 concepts like a lot of amazing stuff that we can draw from but like if it's not shipping in a real device that people can buy and use and developers can like build apps or stuff for then it's just not gonna get anywhere so trojan horsing it into the world via a bitcoin security device is is a way to do this is it still trojan horsing if we didn't really plan it at the time because like we weren't thinking about this at all you know we were so i'll tell you exactly what we were thinking about so you know um we were but we did two generations of passport that you know air gapped uh looked like the um like the cell phone you know little cell phone dumb phone uh form factor uh and i mean we had you know really great customer feedback
Starting point is 00:37:24 in the space uh we were i mean you know like we we had a reputation for not only just the open source and like assembled in the usa but doing something that had like the hardcore security uh but then also was more approachable was like kind of uh and it was like kind of an alien where meets virtue you know design language and everything and i'm really proud of everything we did um but like store securing your bitcoin for us was only like the first part of a very long journey to secure your entire digital life so we have bitcoin q a on the team who's who's been for for years he's been with us since like 2021 when we were just a few people uh he was known for putting out all these amazing guides and tutorials over the years he's our head of customer experience
Starting point is 00:38:16 And so like you, you, you set up your passport hardware wallet or a hardware wallet from another company. But then as you go down this Bitcoin rabbit hole, you start to care about securing everything, right? You, you need to keep your online accounts secure. You have your multi-factor authentication. You want to start self-hosting stuff. You kind of go down this, this entire like rabbit hole as you get orange pilled, hence, and it's kind of stealing your, your name a little bit with, with rabbit hole. And we want to make something that, like, that we can use, that someone can buy and use as a one-stop shop to level up their entire security, right? Not just the Bitcoin. And what was really important to us as well was enabling developers to build apps. And, like, this is key. Because what we realized was that we cannot build everything at Foundation. so examples let's say bitcoin examples um there's those guys doing frost snap that's a cool project you know it's like this like hardware device and like they all do frost and they they usb into each
Starting point is 00:39:28 other like a giant like uh yeah i was gonna ask how you describe it i was gonna say it's like like uh like towing a bunch of you know cars or something when you're attached it's like a train car but centipede i like as well um those guys probably i don't want to speak for them but there's a lot of interesting stuff like that and you know miniscript frost uh there's arc stuff right now with these l2s there's light obviously lightning stuff most of this new stuff does not have good hardware wallet support. And that's because hardware wallet teams are relatively small and you have to decide what you're going to add, right? You have to decide what you're going to devote your team's resources to adding first party support for. Another great example is
Starting point is 00:40:22 I don't think there's still a great like Noster key management type device or something that would keep those keys offline but be convenient enough where you're not where it can like uh you know sign any of your any of your posts or messages or whatever but but keeping the keys out front so like our thesis back in end of 2022 was if we build more of a platform type device and then we open it up to developers that we can get a huge number of interesting applications that are very useful uh built for the device uh that so that we get to focus on maintaining like the operating system and the sdk you know the software development kit and the app platform and building the best hardware but that we give users the ability to customize their exact
Starting point is 00:41:16 device experience i mean we're not i'm not saying anything new like apple did this of course it's like the iPhone playbook, but our main, like one of our main theories was that the space is being held back by the fact that developers can't build apps really for hardware wallets. And then the only hardware wallet company that has some like quasi version of this, right. Where developers can build apps is 90% of the market, you know, ledger. And I have so much criticism about how they do it and we can get into that as well and how like we're kind of the polar opposite from like an openness and architecture perspective but i mean it's very telling i think that you have a company where most of the users i think are dissatisfied most ledger users are are they're
Starting point is 00:42:05 not really happy users if you check you know x and reddit and you know you just anecdotally but they're 90 of the market because i think because they were the only ones to offer some kind of developer platform. keys to move bitcoin meaning their single key can't access your bitcoin on its own just resilient shared custody that gives you institutional grade security while keeping you sovereign unchained also lets you trade straight from your vault access bitcoin back commercial loans open a bitcoin ira where you hold your own keys and set up personal business trust or retirement vaults they even offer inheritance solutions built for long-term hodlers or opt for the highest level
Starting point is 00:43:06 private client service with unchained signature and get a dedicated account manager discounted trading fees exclusive access to events and features and much much more if you want a partner that helps you secure and grow your Bitcoin without giving up control, go to Unchained.com and use the code TFTC10 at checkout to get 10% off your new Bitcoin multisig vault. That's TFTC10 at Unchained.com. What's up, freaks? This rip is brought to you by good friends at CrowdHealth. I've been a happy CrowdHealth member for almost five years now. My wife and I have had two children while we've been on CrowdHealth, and I actually just got the last bill for our third child funded. it was $6,157. CrowdHealth negotiated down to $2,309 and we only paid $500. The rest was
Starting point is 00:43:45 crowdfunded by the CrowdHealth network. If you're sick of health insurance premiums and having to pay deductibles and getting ripped off at the hospital, join CrowdHealth. It's an alternative way to pay for your healthcare. It's not health insurance. It's crowdfunded healthcare. As you can tell, they negotiate prices for you. You pay in cash. It's much cheaper. Overall, we're much happier they have incredible perks go to join crowdhealth.com slash tftc to sign up five years on crowd health not looking back join crowdhealth.com slash tftc use the promo code tftc once you set up your account you're going to get 99 a month for your subscription for the first three months yeah let's lean into that because i think it's completely cosine it is i think we all know
Starting point is 00:44:28 the sort of relative security trade-offs that Ledger has made. But to their credit, and to your point, like 90% of the market, like their most popular hardware wallet by a long margin. And I think it's because of, and it's funny because like the device,
Starting point is 00:44:48 at least the original device, the UX was terrible physically. Like having like you have that small screen and like three buttons and it's like, okay, what am I doing here? and if something like i guess it's because they have this open app architecture obviously like metamask and many of phantom and many others have tapped into that and it has been lacking in the bitcoin space and i think to your point i mean the hardcore security conscious
Starting point is 00:45:17 bitcoiners and builders in the space they deem it a trade-off that they cannot stomach And I think that's the point that you're trying to get at with Kiosk is like, we need, we probably need this from a UX perspective. And if we really want to scale this beyond just this cottage industry of hardcore security breaks, which is not a bad thing. I love the cottage industry, I love the hardware wallet options that cater to people who really care about security. But if we're thinking making an impactful change and getting people to hold, getting more people to hold their keys is a very virtuous and I wouldn't argue imperative
Starting point is 00:46:10 goal to have as an industry. I think your point we're going to need to make a system that gives that device more extendability like ledger has into the digital world yes so absolutely fully agree with you and i don't think at the time especially when we started the company i fully understood why ledger was so successful um i know i came on in 2020 and one of the things we talked about was a lot of like the the pros and cons between all the different hardware wallets and before we even started the company i was i was thrilled to have i think you included like a long twitter thread for me in your newsletter once about like an honest trade-off list between all the different hardware wallets right it was about
Starting point is 00:47:00 this one's open source uh you know this one's closed source this one has this kind of user experience this one is manufactured in this place right like kind of like a breaking down the industry. Cause I thought like I really understood it back then. And I think I understood it from a like tech specs point of view and UX point of view, but I don't think I really understood it from like a, like a, a platform point of view. And that I think whoever builds the best platform is who wins. And I think ledger has done a pretty masterful job so far about building the only platform in the space. Now I have tons of criticisms about the platform. It's walled garden. They review all apps that are submitted. Apps are predominantly new coins. You don't see
Starting point is 00:47:51 like a, like a Casa app for ledger, right? You see a Bitcoin app. Uh, you don't see like the arc guys building an arc app for ledger. You see an eighth app or a salon app. You don't even see the phantom guys or the metamask guys building an app for ledger instead what happens is when you're switching between coins you have to close the bitcoin app and open the salon app you have to close the salon app and open the eth app and so yeah there's a ton of user experience you know complaints i have about that but it's interesting that um they've leaned so hard into the coins that they've obviously completely lost the plot because the app feels like a casino when you open up. I mean, it's probably you open up and you're like flooded with all the different coins and
Starting point is 00:48:41 you're encouraged to swap between them. And they've said publicly that their software revenue from the services equals the hardware revenue, which means that, you know, the whole the whole product becomes designed to push you to trade. You know, they've been doing marketing recently for the traders right it's all about trading and swapping because they're making a killing on all those fees through the ledger app um but what it's really interesting to go deep into the technical reasons why the apps have to be reviewed by ledger why the operating system cannot be open source why they've released things like open source roadmaps during the ledger recover scandal a year or two ago, right? Where it was like, oh, well, you know, pay us 10 bucks a month and we
Starting point is 00:49:29 take your key and we split it between three custodians, but we promise we can't see anything. And there was a lot of, you know, outrage from the space and they released an open source roadmap. But the irony of the open source roadmap is that the actual operating system can never be open source. So why is that? Well, this comes exactly back to our conversation about legacy operating systems that are built on 30 plus years of code what most people don't realize is that ledger is basically running on a smart card operating system another term for that is java card because a lot of the times um in the smart card world and those are like the chips inside your credit cards every single credit card has a smart card chip uh high-end like company like um door access badges
Starting point is 00:50:19 smart card chip they're made by a small number of companies nxp st microelectronics each one has a proprietary smart card operating system and a way for developers to build applets to run on the smart card typically in java hence the java card operating system what most people don't know is that ledger's first product was a usb drive with no screen back in like 2013 and they had and they ended up releasing a companion mobile app for it like to kind of extent like kind of give it like a fake screen on the mobile app before they launched the nos that had the screen and then kind of the rest was history it's made by stm st microelectronics domain ship it's a smart card chip. And what they've done is they've built this operating system to run on the smart
Starting point is 00:51:14 card. This is like 30-year-old legacy tech. It's very slow. It doesn't have the power to do things like drive a modern screen. Like the smart card chip can't drive like a three-inch nice LCD screen or something, which is why they always had those tiny screens on the device. And when you're working with smart cards you have to load an app and then unload an app and so when if you understand like the smart card technology which is 100 closed source super proprietary maintained by these different chip companies each has their own you know kind of smart card os version that's a little separate from the other ones and you know that ledger works very closely with st micro electronics ledger is like that perfect example of building on like a 30 year old technology
Starting point is 00:52:02 and that's why it's so limited that's why developers can't build robust apps that's why you have to open and close apps and that's actually my theory as to why they had to use e-ink screens and they to their credit they leaned into it right tony fidel creator of the ipod and nest coming in beautiful my beautiful industrial design e-ink long battery life but i think the real reason behind the curtain that no one said why they have to use e-ink is because it's the only thing that the smart card ship can power because it's so low res it's just text on a you know on a it's literally just text on like a screen that doesn't need to be constantly powered so they had a breakthrough where they realized i think and this this is not documented anywhere
Starting point is 00:52:50 this is my opinion but i think they realized that they can do a bigger screen but it has to be ink And then they leaned into it. So in end of 2022, we were sitting around saying, like, if we could build a new operating system that allowed developers to write apps without foundation having to review the code, where they can be sandboxed in a modern kind of next gen operating system, then maybe we can like leapfrog ledger, right? Like we can build like that open architecture to finally give them competition from like the platform side of things. What, how do you sandbox successfully? Yeah. How do you approach that design? Like again,
Starting point is 00:53:38 protocol development, no enough to be dangerous, but not nearly enough to actually be competent, fully competent. That's, that's my quite like, how do you isolate and sandbox? everything sure um and and one interesting thing is that like ledger does not so the way that
Starting point is 00:53:58 ledger does it is they they only have one app running at a time and that's how the smart cards do it and so each app actually accesses the master key on your ledger like the seed words no no but that that's why they have to review apps and and and because if you had a malicious this app, it would theoretically be able to, you know, kind of pull off the seed words and maybe somehow, you know, you've had people on the pod before talking about how you can like, you know, kind of exfiltrate the seed words, you know, there's ways to do it. So that's why Ledger has to review each app. And we've also heard anecdotally that you have to pay Ledger to do an app so that they can review it. So how we do it on Kiosk, which is this micro kernel operating
Starting point is 00:54:49 system is there's a couple of different characteristics. One is, is that the, it's called a message passing microkernel and it's all written in rust. It's, it's pretty cool, which is like a very safe, you know, programming language. A lot of like the hardcore Bitcoiners have, especially on the research side. Yeah. Switched over to Bitcoin. So this is pure rust, which is very, that's a lot of the Bitcoin devs are like very excited. We were giving them out at the conference developer units and everyone's like really, really excited about it. So firstly, It's all message passing, which means that let's say you have the Bitcoin app on the device. And let's say the Bitcoin app wants to access the camera so it can scan a QR code.
Starting point is 00:55:32 The Bitcoin app doesn't just get access to the camera. It has to send like a message to the QoS kernel, which then has to relay a message like to the camera app. The camera, even though there's drivers and stuff, it's a camera app like that. it's its own app as opposed to just being something that the OS just like gives as like a core functionality. And so each, each message is being passed from app to app and it's going through the kernel.
Starting point is 00:55:59 And the kernel is deciding, does this app have permission to do this? And so for our first party apps, they have permission, but as third party apps go live in the coming weeks, you'll have to ask permission, you know, to use the camera.
Starting point is 00:56:18 So from like a UX perspective, it's very similar to what you're already used to on iOS or Android, but from like an OS perspective, it's very different because all these apps are like all these functionalities or individual apps behind the scenes, or we even call them like servers on the backend. But we don't typically use that term when we're talking to like consumers and it's a message is being passed through the kernel, which is evaluating and deciding if it's allowed to if the app is allowed to do that. So that's one thing. Two is we're using a security processor that has what's called an MMU, which is like memory management, which is what's used on major processors that you'd find in like Windows, Apple, iPhone, that kind of thing, where memory can be isolated based on the application. So we are leveraging that feature of the processor so that like the app is isolated, like the actual memory, like the RAM, right? It's like it's only in that space given to that app and not to the other apps. The other apps can't see it. That's like not novel to us. That's something that is common in modern operating systems.
Starting point is 00:57:35 But where it is novel is I don't think there's any hardware wallet type devices that do that. they don't you know there's no there's no such thing as like processes and isolation or anything like that on any of these hardware wallets including ledger because they're designed to just run like one set of firmware and the code is the code the code is all there right the code you can't load or unload parts of it it's like and that's why you see trezor and bitbox and others doing like bitcoin only you know hardware wallet versions because they'll say okay well That's the only the code for the hardware wallet and Bitcoin is there and all that other crypto stuff is not there. And so on Kiosk, it looks much more like a modern computer in the sense
Starting point is 00:58:17 that we're leveraging the memory management that the processor offers us. But of course, it's not in like a monolithic 30 million line operating system kernel. It's our own 9000 line micro kernel. And so we feel very comfortable about how that the safety aspects of that and then three what's really cool is each app gets its own hardened derived child seed or key so unlike ledger where the apps can all just grab the master seed from the os and then use it with a specific derivation path for that cryptocurrency on kiosk if you were building a third-party app your app can never see like the master key you call it um you get a hardened derived key so it's still using a key derived from like the master key but it can't go backwards to
Starting point is 00:59:08 actually see that master key so you what you get is you get an app in a sandbox with its own isolated memory uh it only has its own uh derived hardened child seed so and that can be used for anything that can be used for like bitcoin or crypto stuff that can be used for 2fa that can be used to derive keys for like signing code. Like you could build an app or Noster, right? Like once you get a key, you can use that key for any kind of purpose. So you have your isolated memory, you have your hardened derived child seed. And then you have the message passing characteristics of the microkernel where any action you take has to go to the kernel for evaluation and approval. So that's how we do it. It's very different. Like I said, there's some
Starting point is 00:59:58 aspects of it that are um are not unique to us like just you know isolated memory but when it comes to like the microkernel the message passing the hardened the hardened child keys it's like a unique model for enabling uh third-party apps where they live in their own sandbox well yeah that makes a ton of sense is your point about like leap leapfrogging ledger or the the intent and the goal being that you can see you can begin to see how that's made possible with this with the the modularity of the sandboxing and i mean on that point obviously you guys have a robust set of apps that come out of the box with the 2fa the seed vault um file browser things like that but in your mind like what do you want people to build like what are some apps that you guys yeah uh
Starting point is 01:00:49 are not going to build that you think others should build and may be enticed to build now that they understand that this operating system enables it yeah um so an sdk is already out in like an alpha beta type state so um our cto did a talk at op next a few weeks ago in new york and walked through like how to build apps and and we have like a cli tool foundation cli we have a simulator on the computer and what's really cool i don't know if we've talked about it publicly is that we're going to have with the new firmware release for Passport Prime a developer mode that you can turn on that gives you an MCP server so that your AI can test the app itself. It can see everything on the screen on Passport. It can interact with the entire UI. So you can go to
Starting point is 01:01:35 bed, wake up, and be chugging away, testing your app on the real hardware. So first, we spent a lot of time working on the tooling for this. And that'll be out of beta in a few weeks. But it is in beta for anyone that wants to like use it use the simulator we can we can send you know there's a you can contact us on our online and we can send you like a developer unit for free as well um what kind of apps that we want folks to build um well firstly i'll talk about a couple of things we vibe coded q and a and i in the last few weeks i think you mentioned one actually on rhr uh that that q a vibe coded like a noster uh key storage and signing app yep which is awesome or two weeks ago yeah yeah so that that was i think yeah the week before the conference so
Starting point is 01:02:21 it works it's great i can't i can't attest to the code being reviewed like that's not uh that's not going to come from an official foundation uh repo yet uh but that's one great example which is you know you can have your noster keys on there you can do your signing from there and you can keep those keys off your phone permanently so that you don't have to worry about, you know, losing those keys. Another one he built was a full featured password manager with a Chrome extension so that it can just inject the passwords directly into, you know, your browser. A lot of the things I'm interested in that category are being able to like fully lock down your computer from the device, maybe even like Mac OS or like login from the device
Starting point is 01:03:02 where you have to tap on Passport to log into your computer. That's very interesting to me. Some of the stuff I vibe-coded but I've not announced is MCP-related stuff, storing creds and keys for all your different AI tools on the hardware. Oh, this is cool. This is the Noster one, right? Sorry, I was muted. Yeah.
Starting point is 01:03:25 Yeah. Yeah, so basically what's happening here, I know not everyone's watching. Some folks are listening as Marty's showing off Q&A's Noster signer app. But you can basically create like a Noster key or you can, I think, I don't know if he lets you import it. You can have more than one, you know, for all everyone who has 10 different NIMs on Noster. and uh i think he has it talking over usb now but passport prime has bluetooth and so what you know basically you'll be able to on the go right just be connected directly to your phone and go ahead and and any kind of noster message can be uh signed from passport so that you don't
Starting point is 01:04:18 have to keep those noster keys on on your phone it's really cool yeah um and then so yeah so i'm really interested in a lot of the ai applications like i did it some for fun a couple weeks ago where you keep the uh the creds for all your mcp tools and everything on passport um and i'm also really interested in all the next gen bitcoin stuff both things like frost um but then i want like my big ask for a lot of these bitcoin companies is is releasing native versions of their app on passport prime so like i used uh casa as an example right just saying like there's no casa app for ledger but if you were to build a casa app for passport prime you know to run on kiosk you could put your logo you can put your same ui from the mobile app you could use your
Starting point is 01:05:12 own terminology like health checks. So effectively what happens is that instead of having a hardware wallet where you have to like tell your users how to use the hardware wallet, support all the different functionality, deal with bugs introduced by the hardware wallet and like all that kind of stuff, you can just bring your experience onto the device where it feels like a native first party experience and so i we have a new ui coming out along with our sdk um where it's it's like iphone style like a like a grid of apps right and so it's very easy for developers to understand that like you can make an app you can have your app you know icon on it the same one that you have on your mobile app you can put it right here and then any kind of offline capabilities for
Starting point is 01:05:59 secure key storage or signing that you want to give to your users you can finally do it and you don't even have to talk to us so like you'll be able to release it to our app store if you want to and all apps on our app store have to be open source and reproducible because we're building them from your repo we're not going to like just trust like the the build that you give us like we're gonna we're gonna build and and release it ourselves onto our app store but we're also going to have like robust side loading capability so you can release an app directly to your user base so you don't have to talk to us or interact with us at all and i'm really excited about all the security related apps um we're gonna have our own internal app so that we can sign kios releases
Starting point is 01:06:41 from kios we do like two of four signature scheme for our for our signing uh github code signing commits um all that kind of stuff uh just any anything like that uh passwords right uh we have our security keys but we haven't done pass keys yet there's probably an opportunity for like password manager, pass key stuff, any next gen Bitcoin stuff, basically anything where you want to get your important stuff off of your computer or phone, you'll be able to do that, you know, and get it onto Kiosk with a native app. And whether it's something you vibe code for yourself, whether it's something that you have an existing app or service or something like that, either on desktop or mobile, we're basically giving everyone the tools to build these kinds of apps to run on
Starting point is 01:07:29 the uh passport prime hardware that's awesome again going back to the beginning of the conversation like building for the ai world now i'm like running wild like how many api keys have i given my agent access to how many yeah uh credentials is it now i mean limited uh like read only api keys now but i would love to give right capabilities um as well and if there is a way to add the key stored on a Passport Prime running QoS, and you can somehow basically sign access to the key while it's doing it without having the agent stored on its own server. It would be massive.
Starting point is 01:08:14 Yeah, and we're working on a couple ways to do it right now, yeah. It's still in progress. I don't think I have a perfect solution, but I think directionally, based on what we've built internally i think that's exactly the kind of stuff that that you'll be able to do yeah that's awesome it's a brave new world out there and how imperative do you think like that's one thing i worry about i mean we talk about it in bitcoin a lot like the biggest um biggest detriment or the biggest risk to bitcoin long term is complacency i feel like this is equally if not even more so true in the world of incumbent operating systems and software colliding with this wave of ai that's
Starting point is 01:08:55 hitting like going back to what i said in the middle of the conversation like do you think this is a problem that's inevitably going to force a solution like you're building the key os or is there a potential that people don't adopt this and we we live in this woefully insecure world uh in perpetuity well it's funny when you were saying that the first thing like what i what i was thinking about was um not just us as like individual users where you know we have you know we want to self-custody bitcoin we want to keep all of our keys and credentials you know secure as part of our entire digital lives i was actually thinking about like the enterprise custody too because like where my mind went to just immediately was how like the history of all
Starting point is 01:09:45 these exchange hacks over time and like i got into bitcoin i think a few months before the mount gox hack and so everything after that has just been defined by you know one after the other year after year exchange hacks and probably one of the reasons why you know building self-custody tools is it's because of that but right now it's like it's not i actually think as individuals we're like less we have less to worry about than the enterprises and like the enterprise custody stuff that's my big worry too and so i used to think a foundation is just you know we're making tools for for sovereign individuals and now i'm thinking about it as well we've made this tool It's been designed to allow like an individual to secure his entire digital life, including Bitcoin.
Starting point is 01:10:43 But there's a huge need and therefore business opportunity for us, but like huge need on the enterprise side because most of the Bitcoin, is that a true statistic? Is it most of the Bitcoin I think is stored with custodians right now? um i think at least i mean i think it's around 50 50 now at this point that's good yeah so i would just say like there's there's individual custodians that are holding millions of bitcoin yeah right i think has over two million at this point yeah and micro strategy has like diversified to anchorage and fidelity is my understanding maybe others that are which is which is good and kind of spreading it out but what worries me is as we just talked about earlier in the conversation what are these custodians using to keep everything secure and some of them will say
Starting point is 01:11:36 like well it's offline it's on paper we have an hsm we have this coordination policy don't get me started on hsms though because like this that's an that's an hsms are another great example of like built on 30 year old legacy tech like hsms are closed source proprietary old hard to develop for have like enterprise sales cycles where uh they'll maybe send you a sample and then you have to pay them like monthly or annual fees for what like they're not doing anything it's just it's just it's it's exactly in the same category i would say as like smart cards but the opposite like smart cards being small and cheap and prevalent in all the credit cards and hsms being these like old monolithic proprietary black box things that once again they're they're not
Starting point is 01:12:26 designed for you to know what you're approving like they're designed for the pre-ai era like things just get automatically signed there's no human in the loop that's like reviewing what the hsm is signing on some secure device and what i've heard anecdotally from some custodians is that they're doing things like building internal iphone apps to approve things and this is like exactly kind of our thesis for why doing an operating system and hardware like this is interesting where you can enable apps to be built because i want them building internal apps on an open source device running a next-gen open source operating system not on an iphone and then like maybe there's a linux computer sitting in like a locked room somewhere with some armed guards
Starting point is 01:13:15 or maybe there's this hsm that's completely closed source black box in like their server rack that has a lock on it with like a guard outside the room and they're saying don't worry our million bitcoin they're totally safe we have the next gen you know best in class security practices and then you start to unpack like what are they using do these guys have tools that are not available to a normal person and the answer is no because i could go rent a cloud hsm right now on amazon like i can go get a smart card and make an app for it like i can go get a linux laptop and put it in a room with a lock on it it's all the same thing yet because they're custodians like we're just trusting that they have their shit together but we also know as bitcoin long-term
Starting point is 01:14:00 bitcoiners no one has ever had their shit together over the long term yeah and uh obviously i won't disclose who and at what company but i heard the iphone app example earlier this week too so this is a problem and it's going to become over a problem when you look at like ai uh from a security perspective so you look at like let's not even talk let's not talk about something hypothetical because like the mythos model is still kind of hypothetical you know there's been a lot of i just saw like firefox patch the most bugs they ever have this month in this last month and the assumption is because they had access to cloud mythos but let's look at from uh like march that dark sword ios exploit which most people have forgotten about already but about a quarter of all
Starting point is 01:14:50 ios devices were vulnerable to this zero day and all you had to do was load a website you load a website from the browser on your iPhone. And what it did was it broke out of its like browser container and it immediately started looking for important stuff on the device. It looked for crypto wallets. And if so, it would just grab those, you know, seeds or keys off of the secure enclave. It looked, it pulled tiny little thumbnails of all the user's photos so that I could try to figure out, are there any photos that are worth, um, pulling like the, like the full contents of the photo. Um, and then it went through the whole OS and just tried to pull anything else important
Starting point is 01:15:33 from it. So like, if you're using an iPhone for your custody, and even if you're using like a Bitcoin hot wallet, lightning on chain, whatever it might be, I mean, that's a quarter of all iPhones, uh, that were vulnerable because they hadn't updated to like the latest, you know ios version and apple pushed out some emergency stuff i kind of think that they may have pushed some emergency stuff out to everyone because i woke up with an iphone update that was installed and i don't have auto install enabled on my iphone so i think they may have pushed something and just like you know they announced it but i wonder if they pushed something else
Starting point is 01:16:09 and didn't say anything as models like mythos become prevalent we may see one of those every couple weeks because i think the the ios and the mac os kernel i think is around 10 million plus lines of code and then you also have like the web browser engine right sitting on top of that and these browsers are just these enormous web these web engines there's only a couple of them and they're um you know chromium uh with chrome web kit which is like powered with safari i feel like firefox announced they were like switching to chromium or something so i think there's like only two maybe that are being actively developed and they're just enormous as just huge i mean they're not black boxes because they're open source but the problem is is that you point a
Starting point is 01:16:58 model like this towards the linux kernel or towards chromium or something and you try to have it find these zero days and these vulnerabilities and then you can also have it break out of its containers within like ios and you're in huge trouble and so i think that's going to be a constant um fact of life over the next couple years and i do think there's going to be a lot of these uh these zero days and you know um i think the vp uh you know vance that just came out that he had like an emergency call with all the different um the ai leaders like a day or two ago talking about how the banking industry is at risk uh mythos is not publicly available you know they're only allowing it for certain um certain companies yeah operation glass wing
Starting point is 01:17:46 that would come yeah the idea that they're going to somehow find all of the vulnerabilities and patch them and then they'll magically be able to roll it out to everyone so i don't i'm not like pessimistic but i i do think that the the need to find a way to uh better secure everything is more important than ever and everyone's gonna have to figure it out like not just individuals but especially you know these enterprises that are storing things like bitcoin where if you lose it it's gone forever yeah like yeah it's a brave new world yeah equally exhilarating and unnerving but um i'm an eternal optimist and it's like okay yes recognize that these problems exist and will likely persist for a time but the opportunity to fix them create new operating systems new
Starting point is 01:18:41 experiences new ways of interacting with our digital lives incredible opportunity uh both from a user experience perspective and then selfishly uh on your part on my part like from a profit perspective it's like hey we got to re-architect and build new ways of interacting with computers and the internet and there's a lot of opportunity and potential in that yeah i'm uh i'm really excited about it because we were like dreaming about these kinds of stuff in the early days of foundation um we even have some documents from end of 2020 about like what a next-gen operating system could look like where it can beam uis from like one device to another device but we didn't know what that meant we were just having fun you know brainstorming and coming
Starting point is 01:19:31 up with these cool ideas and now you see examples of of these generative ais or the idea that you could have like a server maybe up in your office at home and it's running all your ai stuff locally and it's like whether you call it beaming or like whatever you want to call it it's some combo of streaming UI and generative UI, like on your phone or on your computer side. Like, I love that stuff. Like that stuff. I just, I'm so excited about all of it. Will foundation like build some of that stuff? I don't know. Right. Cause like right now we're very focused on the security aspects and everything like that. But, um, we made like the hard decision to spend what we thought would be two years, but that ended up being three years building this operating system.
Starting point is 01:20:16 we almost it's it's like we we had a very non-linear approach for the company because we did these two generations of passport devices the passport founders edition then like the passport we called a couple different things you know the gen 2 and we ended up calling it passport core and you'd think we would have had like a linear progression of just kind of taking that same form factor and like you know making it thinner making it more powerful more affordable scaling it up getting into more hands but what we actually ended up doing was it's like well we had our alpha product we had our beta product and then we raised the seed round and we're like you know we need to do a whole opera we need to need to do a new operating
Starting point is 01:20:53 system and then we were still selling that second gen passport but we kind of went dark for a couple years like r and d and now we're coming out with a product that was envisioned before ai was popular but that i think has like the the desirable it's not perfect there's a lot we still have to do to it but it has like the most desirable operating system characteristics for this like ai security world as well in addition to the bitcoin security in addition to like the identity related stuff and i'm really excited about that obviously from like a you know selfish profit uh motive but then also because um there is like this is a time where we're going to be able to rip up a lot of stuff and rebuild it because there's going to be this imperative hopefully it's not because bad things
Starting point is 01:21:48 are happening and we're like and and and there's all this chaos on like the cyber side hope hopefully it's because like we think about this stuff in advance and we see the value in them and we start to transition you know to these new tools and everything but i feel like um like we we have something that uh is is shipping that developers are going to be built be able to build apps for in the coming weeks and i'm just really excited to see like what everyone builds well on that note if there's any there's millions of developers listening to the show right now what is your call to action to them uh to begin getting their hands on the operating system and thinking about building apps on top of it yeah so um one is we just uh retweeted from the op next guys yesterday
Starting point is 01:22:40 a talk that ken our our cto did it up next a couple weeks ago in new york if you want to actually like watch a little talk and see how he uh in real time like vibe coded an app using the the CLI tool and everything like that. You can check that out. And then there's instructions there to, um, you can basically start using the SDK and our simulator today. If you want on your computer, you can also shoot us a message on any of these channels, you know, contact form on our site, email, um, DM us on, on X. And if you're a developer, we'll send you a free developer unit. So you can get started and check it out and everything like that. And then, and I would say by end of the month our goal is to have like a release of kiosk out that supports that developer
Starting point is 01:23:26 mode that i mentioned so that you can like flip on mcp and like have it you know test help you the ai test your app for you and you'll see like start to see the ability for users to sideload apps or be coming out with our app store all that kind of stuff and so um definitely check it out and and uh ask us if you have any questions but over the next few weeks there's going to be a lot of SDK and app related stuff that we're going to be putting out. Awesome. Logan, I just sent you the, uh, the link to the up next presentation by Ken. So make sure you put that in the show notes. So you're listening when I get involved, we'll link to that link to the GitHub, obviously the website, but can't believe it took us six years to catch up. And, uh, it was great. I love the,
Starting point is 01:24:12 the line of thought that you're in right now. Cause I think it's, uh, again, a layer below mine but a very important layer as it pertains to the intersection of not only bitcoin but everything we're doing in ai i think these conversations and thinking about these problems particularly at the layer uh that you are is is an imperative right now because it's becoming obvious again going back to my my co-work example like i saw this thing using my computer i was like this is not this is not safe at all like we need to figure out a new way to interact with these things so i'm pumped that you guys are working on it well thank you and i'm really glad that that you've been uh doing a lot of ai related uh podcasts and content and everything because
Starting point is 01:24:57 we often forget that like we as bitcoiners we have a unique perspective when it comes to like both our values our philosophy and then everything we've seen in the field over the last decade plus when it comes to institute not trusting institutions and we bring that same mindset to everything right it might be uh related to custodians right like i mentioned exchange hacks that kind of stuff might be related to covid right or other type institutional stuff and then when it comes to ai i think that whole industry like that i don't consider us in like the ai industry right i consider us still like a i don't know what i would actually consider us maybe like a like a Bitcoin or lead company, something like that. But like, we have a unique perspective
Starting point is 01:25:44 and different values than most of the AI industry. And like, it's important for us, I think, to talk about that and make that heard, because I think they're barreling right now towards this, the growth of the industry and the growth of these tools at the expense of the privacy and security. And that is going to catch up to them. Like, that's not a good position to be in for the long term it may be a short-term high time preference maybe profitable maybe not you know position maybe like user growth position but i don't know about profitable but like in the long term it can it could i don't want to be like doomerism because i'm as optimistic as you but like need some sane voices in there i'm saying okay how can we do this but do it with
Starting point is 01:26:30 privacy how can we do this but do this with security how can we bring these these the way that we approach security on the bitcoin side and like bring those same principles to the ai side of things and i'm really excited to be able to start working on that well again thank you for doing it and i completely agree and thank you for uh the compliments it's uh again just tickling my own fancy i'm fascinated by this stuff and to your point like i do think we have a unique perspective it's funny the parallels whether it's from security or even on the energy side watching all these data centers get built and having been in bitcoin mining for almost a decade now it's like ah i see what you guys are doing i know where the uh where the land mines are for you and um
Starting point is 01:27:12 it's just funny how bitcoiners seem to be ahead of the curve and i think it'll take some time maybe three to five years but i think the approach to security in the ai world that many bitcoiners are taking will be recognized as like oh this is the right way to do things and so i think to that point you guys are ahead of the curve and keep pushing and if you're listening your developer uh and you're interested in what we just discussed go check it out again we'll link to everything in the show notes and begin building because i think to that point we have this legacy architecture and infrastructure that many people are dependent on you need to begin to uh transition away from it slowly but surely and um if not you then who to build the uh the
Starting point is 01:28:02 apps that people can actually trust in this this world that we're barreling towards thank you for listening to this episode of tftc if you've made it this far i imagine you got some value out of the episode if so please share it far and wide with your friends and family we're looking to get the word out there also wherever you're listening whether that's youtube apple spotify make sure you like and subscribe to the show and if you can leave a rating on the podcasting platforms that goes a long way last but not least if you want to get these episodes a day early and ad free make sure you download the fountain podcasting app and go to fountain.fm to find that five dollars a month get you every episode a day early ad free helps the show gives
Starting point is 01:28:50 you incredible value so please consider subscribing via fountain as well thank you for your time and until next time

There aren't comments yet for this episode. Click on any sentence in the transcript to leave a comment.