If you have a lightning address...with NWC.
An nsec that you use with separate lightning wallet to pay invoices just controls your online identity, not your money. And NIP-05 is supposed to address that possibility, but admittedly it doesn't seem to do it the best.
Login to reply
Replies (1)
The main problem is that a lot of Lightning, ecash, etc. wallets allow you to associate an nsec to unlock the wallet. Not many people pasting their nsecs into random vibecoded apps are security-conscious enough to use a separate Nostr key, so if one of those vibecoded apps leaks nsecs, you can pretty much scan the respective lud16 for half a dozen popular wallet domains and, more likely than not, hit the BTC jackpot.