About 14 minutes with practice. You only need something to take notes with. No real wallet details or payments are part of this lesson.
Course contents · Lesson 5 of 21
- Read the whitepaper as an argument · Marked complete
- Hashes and Merkle commitments · Marked complete
- UTXOs, change and accounting · Marked complete
- Scripts describe spending conditions · Marked complete
- Signatures and what they authorize · Marked complete
- Block headers and the chain of work · Marked complete
- Difficulty, hashrate and noisy observations · Marked complete
- Issuance, fees and incentives · Marked complete
- Mempools and policy are not consensus · Marked complete
- Fee changes: RBF and CPFP · Marked complete
- SegWit and transaction weight · Marked complete
- Taproot and Schnorr: useful, not magical · Marked complete
- HD wallets and derivation paths · Marked complete
- PSBT: separate construction from signing · Marked complete
- Descriptors make a wallet policy portable · Marked complete
- Full nodes, pruning and verification · Marked complete
- Reorganizations and lightweight evidence · Marked complete
- Lightning channels and HTLCs · Marked complete
- Lightning liquidity has direction · Marked complete
- Soft forks, proposals and human coordination · Marked complete
- Capstone: trace a payment end to end · Marked complete
What you will learn
- Distinguish authentication from informed authorization.
- Explain why transaction details matter to a signer.
A signature binds a key to a message
Bitcoin uses digital signatures to authorize spending under applicable script rules. BIP 340 specifies Schnorr signatures used in Taproot contexts; earlier output types use other established rules. A valid signature establishes a mathematical relation among a message, signature and public key. It does not establish that a human understood the transaction shown by an interface.
The covered data matters
Transaction signature rules determine which parts are committed to. Different signature-hash modes have different meanings. A signer must therefore inspect the actual transaction and intended policy rather than assuming that every signature authorizes exactly one intuitive payment. A request described as verification can still deserve scrutiny if its content is unclear.
Make the display useful
For a fictional hardware-signing exercise, show the recipient outputs, change recognition, network and fee before approval. If a device cannot meaningfully display what matters, that is a limitation to address, not an invitation to click through. A signature workflow should support refusal and an independent review route. This course never asks for a real signature; use a written transaction summary to practice explaining what would be authorized.
Practice on paper
A signer sees a 20,000-sat recipient payment but the proposed transaction also has an unfamiliar second external output. What is the right review question?
Reveal the worked answer
Ask what every output represents and whether change is correctly identified. A correct first output does not establish that the whole transaction matches the intended action.
Check your understanding
Choose an answer in your head or on paper, then reveal the explanation. Retry whenever you like. Answers are not submitted or scored; completion marks are your own learning notes.
1. Does cryptographic validity prove informed human consent?
- Yes
- No
Reveal answer 1
No. The human may have been shown misleading information.
2. Should unfamiliar signature modes be ignored because the wallet recognizes them?
- Yes
- No
Reveal answer 2
No. Their commitments need to match the intended authorization.
Take this with you
Review the message and spending effect, not merely the signature prompt.
Your learning, at your pace
Read every lesson freely. Optional progress tracking needs JavaScript and browser storage; it does not require an account or wallet.
Remove the saved completion marks for this course on this browser? Other courses will stay unchanged.
Saved only in this browser for this website address. Clearing storage, changing device or using a different gateway may lose these marks. No sync, grading or credential; nothing is sent to us. The export is a record for you, not a file this site can import.