any website that could have malicious intent. They would not be able to drain the funds untill I actually approve it correct? If I only approve viewing of the account, that means they can't do much else?
pretty much. because you would need to confirm the transaction from the hardware wallet itself
Who mentioned hardware wallet?
I think they assumed I was talking about a hardware wallet, but the answer is still valid right?
Generally yes, however a malicious web3.0 dapp could potentially ask for malicious permissions when you initially connect, and potentially bypassing any transaction confirmations (on a non malicious dApp, it's common for it to ask to see your address etc. and to prompt for transactions, when you connect for the first time). But it should at least ask before actually connecting MetaMask
Обсуждают сегодня