Bitcoin Forum
November 16, 2024, 12:04:45 AM *
News: Check out the artwork 1Dq created to commemorate this forum's 15th anniversary
 
   Home   Help Search Login Register More  
Pages: [1] 2 3 »  All
  Print  
Author Topic: Bit-Bank: New Online eWallet  (Read 5503 times)
seeARMS @ Bit-Bank (OP)
Copper Member
Newbie
*
Offline Offline

Activity: 62
Merit: 0


View Profile WWW
July 24, 2011, 03:43:47 PM
 #1

Bit-Bank is a new online eWallet with a goal of providing a secure, convenient location for users to store their bitcoins.

By storing Bitcoins in our eWallet, they'll be accessible from any internet-enabled device, and may be withdraw to any BitCoin address or another Bit-Bank account (which is free and instantaneous).

Users can generate many BitCoin addresses, which can be assigned names such as public, donations, private, etc. Furthurmore, all users are given a unique URL (such as, for mine: https://bit-bank.org/user/seeARMS) which simply displays your public Bitcoin address.

We have also just released an API, which will hopefully spark more mainstream interest in BitCoins. This API allows developers to query for balances, send bitcoins, query for your receiving addresses, etc.

The next thing we're working on is a shopping cart interface (SCI). This will allow merchants to easily accept BitCoin payments online. I hope to have this complete within the next week or so.

Visit us at: https://bit-bank.org.

If you have any questions/comments about the security, appearance or functionality of the site, please ask away.
bitlotto
Hero Member
*****
Offline Offline

Activity: 672
Merit: 500


BitLotto - best odds + best payouts + cheat-proof


View Profile WWW
July 24, 2011, 03:56:52 PM
 #2

What do you do for security?

*Next Draw Feb 1*  BitLotto: monthly raffle (0.25 BTC per ticket) Completely transparent and impossible to manipulate who wins. TOR
TOR2WEB
Donations to: 1JQdiQsjhV2uJ4Y8HFtdqteJsZhv835a8J are appreciated.
seeARMS @ Bit-Bank (OP)
Copper Member
Newbie
*
Offline Offline

Activity: 62
Merit: 0


View Profile WWW
July 24, 2011, 04:25:29 PM
 #3

What do you do for security?
Basic:
-Force all traffic through https
-Use a VPS for hosting

Databases:
-Store passwords using a secure hashing algorithm + a unique salt
-Store API keys and tokens using a secure 2-way encryption algorithm (with a private key)

Forms:
-Escape input and strip HTML tags to prevent MySQL injection
-Use sessions + tokens (which expire after a short while) to prevent cross-site request forgery
-Check input for proper values for current form

API:
-Escape parameters + strip tags to prevent MySQL injection
-Check parameters for proper values (ie 30-character API key, etc)
andrepcg
Full Member
***
Offline Offline

Activity: 230
Merit: 100



View Profile
July 24, 2011, 04:31:41 PM
 #4

good work!

one thing i dont like is the design. i think the current design does not fit what the website is about, you need something more modern.
seeARMS @ Bit-Bank (OP)
Copper Member
Newbie
*
Offline Offline

Activity: 62
Merit: 0


View Profile WWW
July 24, 2011, 04:54:31 PM
 #5

good work!

one thing i dont like is the design. i think the current design does not fit what the website is about, you need something more modern.
Thanks for the input - I'll definitely consider switching to a more Web-2.0 design in the future.
That'll be after all the core functionality (including the SCI) is finished, though.
bitlotto
Hero Member
*****
Offline Offline

Activity: 672
Merit: 500


BitLotto - best odds + best payouts + cheat-proof


View Profile WWW
July 24, 2011, 05:08:50 PM
 #6

The hardest part is reading black on a very dark brown background.

*Next Draw Feb 1*  BitLotto: monthly raffle (0.25 BTC per ticket) Completely transparent and impossible to manipulate who wins. TOR
TOR2WEB
Donations to: 1JQdiQsjhV2uJ4Y8HFtdqteJsZhv835a8J are appreciated.
osmosis
Sr. Member
****
Offline Offline

Activity: 300
Merit: 250



View Profile
July 24, 2011, 10:49:18 PM
 #7

Your page states..

"A minimal fee of 0.01 BTC gets sent to Bit-Bank to allow the continued use of our services. Other than that, our services are entirely free."

Is this a one time fee, or??
elk-tamer
Member
**
Offline Offline

Activity: 87
Merit: 10


View Profile
July 24, 2011, 11:15:36 PM
 #8

Sign up didn't work for me:

"The requested URL /user/index.php was not found on this server."
Tril
Full Member
***
Offline Offline

Activity: 213
Merit: 100


View Profile
July 24, 2011, 11:24:32 PM
 #9

It's great to have more of these e-wallet sites.  I like the colors and design.

Bit-Bank needs to build trust.  How do I know the site won't just run off with the funds?  I'd suggest at a minimum, contact info for the company and principals, and a pgp key.  Ideally BBB accreditation, gdcaonline.com accreditation, business registration info for whatever country it's based in.  Posts from long standing community members that they know you and can be trusted.  Optionally a bitcoin-otc.com or ebay rating.  WHOIS should not be privacy protected for this kind of business (but currently is).  Note that even with all this info, the site must build up a reputation over time. 

I should also note one of your main competitors is known for poor customer service (you know who I mean), if you do excel at responsiveness you should do well.
Raoul Duke
aka psy
Legendary
*
Offline Offline

Activity: 1358
Merit: 1002



View Profile
July 24, 2011, 11:54:49 PM
 #10

Sign up didn't work for me:

"The requested URL /user/index.php was not found on this server."


I already told the OP about that bug like 2 weeks ago... It seems he didn't fixed it ;P
seeARMS @ Bit-Bank (OP)
Copper Member
Newbie
*
Offline Offline

Activity: 62
Merit: 0


View Profile WWW
July 25, 2011, 06:27:55 AM
 #11

The hardest part is reading black on a very dark brown background.
I'll definitely consider increasing brightness of the background - it does seem a bit dark.

Your page states..

"A minimal fee of 0.01 BTC gets sent to Bit-Bank to allow the continued use of our services. Other than that, our services are entirely free."

Is this a one time fee, or??
It's a fee which is applied to every withdrawal. Do you think it's a bit too much?
Sign up didn't work for me:

"The requested URL /user/index.php was not found on this server."


I already told the OP about that bug like 2 weeks ago... It seems he didn't fixed it ;P
Ah, I've just fixed that error. @psy, I looked over the code when you first told me of the problem and couldn't find anything visibly wrong with it. However, I just tried registering on a /user page, and it didn't work. Figured out it's because that page is modified by Apache's URL rewriting and this messes with the redirect I set up. The user account did get registered, it just didn't redirect you correctly.

It's great to have more of these e-wallet sites.  I like the colors and design.

Bit-Bank needs to build trust.  How do I know the site won't just run off with the funds?  I'd suggest at a minimum, contact info for the company and principals, and a pgp key.  Ideally BBB accreditation, gdcaonline.com accreditation, business registration info for whatever country it's based in.  Posts from long standing community members that they know you and can be trusted.  Optionally a bitcoin-otc.com or ebay rating.  WHOIS should not be privacy protected for this kind of business (but currently is).  Note that even with all this info, the site must build up a reputation over time. 

I should also note one of your main competitors is known for poor customer service (you know who I mean), if you do excel at responsiveness you should do well.

Thank you.
I've disabled the WHOIS guard. I'll add our contact info, PGP key and company principals in the next few days. I hope to establish a good reputation - I'm trying to be as transparent as possible in order to achieve this.
Existence
Member
**
Offline Offline

Activity: 179
Merit: 18


View Profile WWW
July 25, 2011, 11:32:43 PM
 #12

Site looks good.
Keep up the good work!

ValueHunters.club Sell your lots, browse and buy antiques, fine art, jewellery and more for cryptocurrency all over the world.
Click here to profit from Crypto-Auction Join Telegram chat here
Vod
Legendary
*
Offline Offline

Activity: 3892
Merit: 3166


Licking my boob since 1970


View Profile WWW
July 25, 2011, 11:46:37 PM
 #13

The number listed in the whois is from an Indian cell phone?

Very nice looking neighborhood though, according to Google Earth.

I post for interest - not signature spam.
https://elon.report - new BPI Reports!
https://vod.fan - fast/free image sharing - coming Nov
seeARMS @ Bit-Bank (OP)
Copper Member
Newbie
*
Offline Offline

Activity: 62
Merit: 0


View Profile WWW
July 25, 2011, 11:57:51 PM
 #14

The number listed in the whois is from an Indian cell phone?

Very nice looking neighborhood though, according to Google Earth.
Really? It's my cell phone.
Area code 905 is for southern Ontario, where I live.
Vod
Legendary
*
Offline Offline

Activity: 3892
Merit: 3166


Licking my boob since 1970


View Profile WWW
July 26, 2011, 12:01:08 AM
 #15

The number listed in the whois is from an Indian cell phone?

Very nice looking neighborhood though, according to Google Earth.
Really? It's my cell phone.
Area code 905 is for southern Ontario, where I live.

I believe you, I just found it odd it was listed on (several) old Indian cell phone registries.

How old are you?

I post for interest - not signature spam.
https://elon.report - new BPI Reports!
https://vod.fan - fast/free image sharing - coming Nov
elk-tamer
Member
**
Offline Offline

Activity: 87
Merit: 10


View Profile
July 26, 2011, 01:19:14 AM
 #16

The number listed in the whois is from an Indian cell phone?

Very nice looking neighborhood though, according to Google Earth.
Really? It's my cell phone.
Area code 905 is for southern Ontario, where I live.

I believe you, I just found it odd it was listed on (several) old Indian cell phone registries.

How old are you?
getting a little creepy there Jafm.
mc_lovin
Legendary
*
Offline Offline

Activity: 1190
Merit: 1000


www.bitcointrading.com


View Profile WWW
July 26, 2011, 01:39:05 AM
 #17

The number listed in the whois is from an Indian cell phone?

Very nice looking neighborhood though, according to Google Earth.
Really? It's my cell phone.
Area code 905 is for southern Ontario, where I live.
Sweet!  I'd rather trust a Canadian than.. anyone else!

What sort of insurance does our invested bitcoins have?  If you get hacked and lose all the coins, what says we ever get paid?
Vod
Legendary
*
Offline Offline

Activity: 3892
Merit: 3166


Licking my boob since 1970


View Profile WWW
July 26, 2011, 01:50:48 AM
 #18

How old are you?
getting a little creepy there Jafm.

Nonsense.  In Canadian law, you cannot enter into an agreement with a minor.  If he is under 18 anything you are sending to him is his, and he has no legal liability to give it back.

I asked his age because I don't think he is the owner of the house at that address - meaning he is probably living with his parents.

I post for interest - not signature spam.
https://elon.report - new BPI Reports!
https://vod.fan - fast/free image sharing - coming Nov
elk-tamer
Member
**
Offline Offline

Activity: 87
Merit: 10


View Profile
July 26, 2011, 02:05:57 AM
 #19

Nonsense.  In Canadian law, you cannot enter into an agreement with a minor.  If he is under 18 anything you are sending to him is his, and he has no legal liability to give it back.
Are you making up or have you just misread something? A minor, or anyone with diminished mental capacity,  can more easily get out of a contract if it becomes clear they were taken advantage of, but that doesn't mean you can't enter into an agreement with a minor. I'm just basing that on common sense though.
Vod
Legendary
*
Offline Offline

Activity: 3892
Merit: 3166


Licking my boob since 1970


View Profile WWW
July 26, 2011, 03:13:33 AM
 #20

Nonsense.  In Canadian law, you cannot enter into an agreement with a minor.  If he is under 18 anything you are sending to him is his, and he has no legal liability to give it back.
Are you making up or have you just misread something? A minor, or anyone with diminished mental capacity,  can more easily get out of a contract if it becomes clear they were taken advantage of, but that doesn't mean you can't enter into an agreement with a minor. I'm just basing that on common sense though.

Not making it up, and I just verified.  In Canada (and the US) you need to have reached the age of majority to have competence to contract. 

I post for interest - not signature spam.
https://elon.report - new BPI Reports!
https://vod.fan - fast/free image sharing - coming Nov
Pages: [1] 2 3 »  All
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!