Vitalik Buterin Flags Wallet UX Gaps With Multisig Walkaway Test

TheNewsCryptoPublished on 2026-01-29Last updated on 2026-01-29

Abstract

Vitalik Buterin, co-founder of Ethereum, identified significant usability issues in multisig wallets after performing a walkaway test. He discovered that many wallets fail basic usability standards when front-end applications are unavailable. Buterin was able to bypass the need for a specific Safe app by using Etherscan’s "read contract" feature to access multisig information directly, highlighting the advantage of open infrastructure. He emphasized that users should be able to access core functions through neutral tools like block explorers even if an application’s interface becomes inaccessible. Buterin proposed a "viewing key" solution to enhance privacy while acknowledging the inherent risks of handling sensitive data in URLs. Developers suggested alternatives, including open-source tools and zero-knowledge proof systems for authorization. This discussion occurs amid structural changes in Ethereum trading following the launch of U.S. spot ETH ETFs.

The co-founder of Ethereum, Vitalik Buterin, is using a mundane multisig check and found that a lot of wallets do not pass basic usability and the walkaway test.

The co-founder revealed that, “This morning I thought to check the addresses of those who were signers on my multisig and on my phone; I hadn’t installed any Safe app.” He further mentioned that instead of reinstalling Safe, he realised that he could just look up the address on Etherscan and use the ‘read contract’ feature to get directly what he wants.

He described the loophole as a quiet yet critical win for open infrastructure. These are some kinds of extra UX benefits you get if your wallet or application is open source and clears the walkaway test.

Simply put, if the front end vanishes, users must still access core functions through neutral tools such as block explorers. Buterin alerted that this same plan will somehow have to break due to privacy.

Co-founder’s suggestion

His suggested direction is a viewing key... an extended version of their address and also comprises extra private info, having block explorers read that client-side through URL hash fields.

He admits the trade-off and informs people that pasting any kinds of secrets into URLs or web pages is risky, and in the end, you’ll just be capable of doing more things via your wallets directly.

Developers swiftly came up with alternatives. One reply highlighted an open-source tool, SwissKnifeXYZ, as one more open-source alternative, while Microchain Labs underlined microchain zk signers displacing explicit multisig signatures having a zk proof of authorisation, securing only a state root on-chain.

The experiments now sit against a distinct backdrop: the appearance of U.S. spot ETH ETFs, where structural flows have initiated to redesign how Ethereum trades. The initial weeks of trading witnessed ETH ETF inflows concentrate liquidity at the front of the curve, reflecting patterns once linked with BTC products.

Highlighted Crypto News Today:

Kalshi Traders are Bearish on Bitcoin, Will BTC Price Stand the Test?

TagsETHETHEREUMvitalik Buterin

Trending Cryptos

Related Questions

QWhat did Vitalik Buterin discover when checking his multisig addresses without the Safe app installed?

AHe discovered that he could use Etherscan's 'read contract' feature to access the information directly, highlighting a usability gap in many wallets that fail the basic walkaway test.

QAccording to Buterin, what is a critical benefit of open-source wallets or applications that pass the walkaway test?

AThey provide extra UX benefits, allowing users to access core functions through neutral tools like block explorers even if the front end vanishes.

QWhat solution did Vitalik Buterin suggest to address the privacy concerns with his initial plan?

AHe suggested using a viewing key, which is an extended version of an address containing extra private information, readable by block explorers client-side through URL hash fields.

QWhat trade-off did Buterin acknowledge with his suggested solution involving URLs?

AHe admitted that pasting any kinds of secrets into URLs or web pages is risky, and ultimately, users will need to perform more actions directly through their wallets.

QWhat alternative tool was mentioned by developers in response to Buterin's findings?

ADevelopers highlighted an open-source tool called SwissKnifeXYZ as an alternative, and Microchain Labs mentioned using microchain zk signers with zk proofs of authorization to replace explicit multisig signatures.

Related Reads

Thanks to Dice Rolls, Bitcoin Keys Are Stored Offline, But Not Everyone Will Do It

The article discusses using dice rolls to generate secure Bitcoin wallet seeds, providing entropy independent of potentially flawed hardware random number generators. It explains that each fair dice roll offers about 2.585 bits of entropy, with around 50 rolls needed for a standard 12-word seed phrase and 99+ recommended for higher security. This method gained attention after a vulnerability was revealed in some Coldcard hardware wallets, where a faulty firmware RNG (dating back to 2021) compromised generated keys. The analysis notes that while a dice-generated main seed was safe from this specific flaw, other Coldcard functions (like creating paper wallets, backup keys, or passwords) could still be vulnerable if they used the defective RNG. The piece argues that while dice-based entropy is technically robust, the manual process is error-prone, tedious, and unrealistic for most new users, who might make mistakes in recording or inputting rolls. It concludes that while manual entropy generation should remain an option for advanced users, the long-term goal is to develop reliable, user-friendly hardware and software that securely generates randomness without requiring specialized knowledge. Coldcard users are advised to check their firmware version and replace any secondary secrets (like paper wallet keys) created with vulnerable devices, while also considering multi-signature setups with devices from different manufacturers for added security.

cryptonews.ru4h ago

Thanks to Dice Rolls, Bitcoin Keys Are Stored Offline, But Not Everyone Will Do It

cryptonews.ru4h ago

Trading

Spot

Hot Articles

Discussions

Welcome to the HTX Community. Here, you can stay informed about the latest platform developments and gain access to professional market insights. Users' opinions on the price of ETH (ETH) are presented below.

活动图片