AI-generated analysisPublished automatically and not human-verified. Validated context appears in community notes below.
← Watch feed
Low 48 Monero

payjoin: exclude 0-conf inputs from receiver candidates (#3389)

Public commit record

What the developer wrote

Authored by Cindy

58/100 · Thin
payjoin: exclude 0-conf inputs from receiver candidates (#3389)
✓ Specific, descriptive subject✓ Names a concrete action or component✓ Links an issue, advisory, or supporting reference! No meaningful explanatory body
The short version

What changed, and why it matters

This change stops Payjoin transactions from using unconfirmed (0-confirmation) coins as inputs when the wallet is acting as the receiver in a Payjoin swap. Before the fix, the receiver could accidentally propose or sign a Payjoin that relied on coins that had not yet been mined into a block. Such coins can disappear, be double-spent, or get replaced, which could cause the Payjoin to fail, be invalid, or expose the receiver to loss or confusion. The fix adds an optional 'confirmed only' filter and turns it on for Payjoin receiver candidate inputs.

Recommended action

Treat this as a hardening/defensive fix. Review whether 0-conf inputs were ever actually selected in live Payjoin sessions and whether any related transaction failures or double-spend attempts occurred. No immediate emergency response is indicated, but ensure the change is included in the next release and consider adding tests that verify 0-conf UTXOs are excluded from Payjoin receiver candidates.

Security signals we found

01

0-conf input exclusion in receiver-side Payjoin candidate selection

02

Payjoin receiver input selection now requires at least one confirmation

03

Potential risk of building a Payjoin on unconfirmed/replaceable inputs reduced

Risk score

Why this scored 48/100

Our methodology →
Potential impact 12/30
Exploitability 10/25
Stealth signal 8/15
Affected reach 7/15
Confidence 7/10
Evidence quality 4/5
Human-validated context

Community notes

Notes can correct, qualify, or add evidence to the AI analysis. Every note shown here has been validated by a human moderator.

No validated notes yet.

The AI analysis stands alone for now. Submit a note if you can add evidence or important context.