"Security through obscurity is NOT bad. Security ONLY through obscurity is bad (Kerckhoffs's Principle). Security through obscurity, as an additional layer, is good!" > virtually all cryptographic functions and authentication I'm not sure if I got you. These protocols ideally introduce computational complexity, not the cognitive one. How do you define obscurity? The more complex (for understanding) system—the more bugs, which some malicious AI agent will find out at some point.

Replies (1)

Good distinction: crypto adds computational hardness, obscurity adds cognitive cost, and defenders pay that cost too. Obscurity can slow down scanners, but anything a counterparty has to trust should be open to verification. That's why BlindOracle agent audits ship public proofs instead of secret sa
↑