P2P at OpenPGP literacy para sa mga taong may pakialam na sa Monero
Itinatago na ng ledger ng Monero ang amounts at counterparties by default. Kinakailangan iyon. Hindi sapat. Madalas boring ang leak na sumisira sa careful stack: trade secret na nakaupo sa plain text sa loob ng messenger, screenshot ng share, 「support」 DM na nagpapaste sa iyo ng dapat ikaw lang ang may hawak.
Literacy ang post na ito — P2P role at limitasyon, pagkatapos kung bakit bahagi ng parehong skill set ang pag-encrypt ng sensitive delivery sa sarili mong public key — hindi product pitch na bihis sa thriller.
Sa isang sulyap
| Field | Value |
|---|---|
| Paksa | P2P trade literacy; OpenPGP public-key delivery; messenger plaintext risk; Monero layer hygiene |
| Format | Guide-first explainer para sa privacy / security-minded readers |
| Pangunahing sources | OpenPGP encryption overview · RFC 9580 · Telegram cloud vs secret chats · Domestic Monero public FAQ / Profile copy |
| Produktong nabanggit | Domestic Monero — optional OpenPGP sa Profile para sa encrypted notifications |
| Opisyal na entry | @domestic_monero_bot |
| Support | /support lang sa opisyal na bot (isama ang Trade #ref + trade state) |
| Assets (P2P) | XMR ↔ BTC, LTC, ETH, SOL, USDT (ERC-20 sa Ethereum mainnet lang) |
| Hindi ito | User-to-user encrypted chat; seizure-proof guarantee; legal o tax advice; concealment manual |

Para saan ang P2P (role, effect, performance, security)
Role. Nagkokonekta ang peer-to-peer trading ng dalawang taong may kasunduan na sa asset, amount, at rails — nang walang central limit-order book na nagde-decide ng match. Maaari pa ring i-stage ng platform ang deal (offers, locks, proofs, settlement gates). Hindi iyon katulad ng 「stranger sa group chat na humahawak ng iyong coins.」
Effect. Kapag nagde-delist ang regulated venues ng privacy coins o nagfa-freeze ng accounts mid-KYC, nananatiling available ang P2P conversion paths bilang kategorya: desktop Tor markets, instant swaps, structured Mini Apps, at — pinaka-risky — informal chat deals. Na-map na ng Archive ang mga pagkakaibang iyon: Instant swap vs P2P, Telegram is not an escrow.
Performance. Karaniwang mas mabagal ang P2P kaysa sa liquid CEX click. Stake, on-chain payment proof, confirmation waits, at human timing ang gastos ng trust model na hindi umaasa sa licensed broker. Hindi kumpleto ang tawaging 「bad UX」 nang hindi pinapangalanan ang trust trade.
Security. Inililipat ng P2P ang risk patungo sa:
| Risk | Bakit mahalaga |
|---|---|
| Counterparty | Dapat may unang gumalaw o umasa sa lock |
| Payment rails | Fake proofs, third-party deposits, tainted fiat (kung mayroon) |
| Channel hygiene | Fake support, off-platform pushes, paste-the-secret scams |
| Operational discipline | Deadlines, exact amounts, panatilihing offline ang credentials |
Binabawasan ng escrow o multisig-style staging ang ilang theft shapes. Hindi nito binubura ang bad payment sources, device compromise, o plaintext secrets sa chat history. Para sa bank-freeze angles sa fiat-receipt P2P, tingnan ang P2P bank freezes.
Bakit mandatory ang literacy na ito para sa mga Monero people
Tinutugunan ng Monero ang on-chain visibility. Karamihan sa users ay:
- Dumarating mula sa transparent asset (BTC, ETH, USDT…)
- Nagko-coordinate sa pamamagitan ng messenger o web UI
- Nag-iimbak ng recovery material at trade credentials sa devices
Kung iniiwan ng step 2 ang Authorization Credentials sa readable chat history, hindi nabigo ang privacy ng chain — nabigo ang delivery path.
Nag-iisip na ang privacy advocates sa layers (keys, freeze planes, legal obligations). Ilapat ang parehong habit sa Monero ops:
| Layer | Ano ang maitatago | Ano ang hindi maitatago |
|---|---|---|
| Monero chain | Amounts / counterparties sa ledger na iyon | Iyong Telegram identity, screenshots, exchange KYC |
| Messenger cloud | Casual ISP snooping sa transit | Platform-accessible cloud content; phone metadata sa ilalim ng process |
| OpenPGP sa iyong pubkey | Readable body ng delivered secret sa channel na iyon | Seized device na may hawak din ng iyong private key + passphrase |
Sibling framing para sa messenger architecture: Why a Telegram Mini App.
OpenPGP sa isang page (ang useful na kalahati)
Hybrid cryptosystem ang OpenPGP (openpgp.dev, RFC 9580):
- Random session key ang nag-e-encrypt ng message body (symmetric).
- Na-e-encrypt ang session key na iyon sa public key ng recipient.
- Ang matching private key lang ang nag-u-unlock ng session key, pagkatapos ang body.
Kahit sino ay maaaring maghawak ng iyong public key. Ikaw lang ang dapat may hawak ng private key. Ciphertext pa rin ang ciphertext sa cloud chat sa lahat ng walang private key na iyon — kasama ang curious admin, stolen session screenshot farm, o future dump ng chat backups.
Hard limits (sabihin nang malakas):
- Nananalo ang endpoint compromise. Kung nasa seized phone ang private key at passphrase, bukas ang envelope.
- Nanatili ang metadata. Sino ang na-message, kailan, at na may dumating na PGP blob ay maaaring visible pa rin.
- Hindi forward-secret by default. Maaaring i-decrypt ng long-term private key leak ang mas lumang captured ciphertext.
- Hindi chat protocol. Ang pagre-register ng key para sa inbound service delivery ay hindi 「encrypted DMs sa counterparties.」

Ano talaga ang sine-ship ng Domestic Monero (public UI)
Maaaring maghawak ang Profile ng optional OpenPGP public key. Kapag naka-configure ang notifications, maaaring ipadala ang sensitive trade materials — kasama ang trade share delivery — bilang PGP message na ikaw lang ang makaka-decrypt. Public string: 「Sensitive trade details are sent as a PGP message only you can decrypt.」
Critical disambiguation:
| Operator PGP pack | Iyong Profile OpenPGP key | |
|---|---|---|
| Purpose | Patunayan ang opisyal na bot / authenticity materials | I-encrypt ang inbound sensitive notifications sa iyo |
| Sino ang nagde-decrypt | Nagve-verify ka ng signatures gamit ang published operator key | Ikaw ang nagde-decrypt gamit ang iyong private key |
| Chat? | Hindi | Hindi — hindi pa rin user-to-user messaging |
Unshipped / out of scope para sa Archive bilang 「live」: peer-to-peer encrypted trade chat sa pagitan ng counterparties. Huwag invent.
Kapag nalikha ang trade ay makakatanggap ka pa rin ng trade share. Panatilihing offline. Binabalaan ng app na hindi na ito ipapakita pagkatapos mong sumang-ayon. Ang lost share recovery paths na nagre-resend sa pamamagitan ng Telegram ang eksaktong dahilan kung bakit mas maganda ang ciphertext kaysa plaintext sa chat na iyon.

Practical habits (maliit, checkable)
- Generate at i-back up ang OpenPGP key offline bago mo ito kailanganin mid-trade.
- Irehistro lang ang public key sa Profile; huwag kailanman i-paste ang private key o passphrase sa Telegram.
- I-enable ang encrypted notifications pagkatapos lang ma-verify ang key.
- Kopyahin ang trade shares sa offline storage; tratuhin ang chat history bilang hostile long-term storage.
- I-verify ang bot bago ang alinman sa itaas: Verify official channels.
- Magsimula sa maliit na trade para i-rehearse ang decrypt → settle → Receive XMR / refund nang walang adrenaline.

Mga termino sa artikulong ito
| Termino | Kahulugan dito |
|---|---|
| P2P offer | Peer listing para bumili/magbenta ng XMR laban sa supported payment assets |
| Trade share | Authorization credential na kailangan para makatanggap o mag-refund ng XMR sa tamang state |
| OpenPGP | Public-key cryptography standard para mag-encrypt/mag-sign ng data |
| Cloud notification | Bot message na dine-deliver sa default (non–Secret Chat) path ng Telegram |
| Multisig Trade Wallet | Platform-staged wallet address na ipinapakita in-app — hindi on-chain Monero multisig na kontrolado mo |
| Trade #ref | Maikling public trade identifier para sa /support |
Disclaimer
Editorial opinion at general security literacy ang artikulong ito, hindi legal advice, hindi tax advice, at hindi gabay para umiwas sa lawful process. Binabago ng pag-encrypt ng notifications kung sino ang makakabasa ng chat transcript; hindi ka nito ginagawang invisible, seize-proof, o exempt sa local law. Kung compromised ang device na may hawak ng iyong private key, ipalagay na readable ang ciphertext para sa key na iyon.
FAQ
Required ba ang OpenPGP sa Domestic Monero?
Hindi. Optional ito. Inirerekomenda ng public FAQ kung gusto mong ilayo ang Authorization Credentials at notifications sa plain chat.
Pinapayagan ba ng pagre-register ng key na mag-chat privately sa counterparty?
Hindi. Walang user-to-user chat. Nag-e-encrypt ang PGP ng service → you delivery ng sensitive materials.
Kung seize ng pulis ang phone ko, safe ba ako?
Kung nag-u-unlock ang private key / passphrase sa phone na iyon, hindi. Nakakatulong ang ciphertext sa Telegram laban sa iba na nagbabasa ng cloud copy nang walang iyong key. Hindi ito device-seizure talisman.
Bakit hindi Secret Chats na lang?
One-to-one human E2EE ang Secret Chats at hindi nila sine-redefine kung paano nagde-deliver ang bots ng cloud notifications. Cloud path ang sinasakyan ng product notifications; i-encrypt ang payload kung sensitive ang payload.
Ano ang Domestic Monero?
Telegram Mini App para sa peer-to-peer Monero trades laban sa BTC, LTC, ETH, SOL, at USDT (ERC-20). Opisyal na entry: @domestic_monero_bot.
Buksan ang Mini App: @domestic_monero_bot
Related: Why a Telegram Mini App · Telegram support DM near-miss · Self-custody habits · Verify official channels
