Oddbean new post about | logout
 Any "controller" wallet software that requires it could get compromised. Like the recent btcpay plugin that caused someone to lose several BTC. 
 Just read tye whole thread about it. Terrible! 

Ok so basically don't rely on the plugins?

Been running Umbrel for about 2.5 years. No issues of this kind. 

I now run a dedicated BTCPayserver but it has zero liquidity so far. Have similar plans as the guy who lost BTC there.  
 Or maybe I interpreted to narrow. Not letting any one third party software manage your macaroon?  
 It's preferable if you have to give out a macaroon for a third party integration that it's a read-only macaroon that only allows creation of invoices. 
 Right,  I know that difference. But I don't understand why one would give the admin macaroon?