PodParley PodParley

S16 E33: Liz Steininger on Least Authority & Auditing Open Source Software

Liz Steininger is the CEO of Least Authority: a company which specializes in auditing open source software since 2014. In an industry where anyone can verify the code but very few do, having professional audits is extremely valuable.

Episode 33 of the Bitcoin Takeover Podcast podcast, hosted by Vlad Costea, titled "S16 E33: Liz Steininger on Least Authority & Auditing Open Source Software" was published on July 9, 2025 and runs 89 minutes.

July 9, 2025 ·89m · Bitcoin Takeover Podcast

0:00 / 0:00

Liz Steininger is the CEO of Least Authority: a company which specializes in auditing open source software since 2014. In an industry where anyone can verify the code but very few do, having professional audits is extremely valuable.

Liz Steininger is the CEO of Least Authority: a company which specializes in auditing open source software since 2014. Originally founded by Zooko Wilcox, Least Authority has conducted more than 100 security audits in the space. Some of the best known contractors who requested an expert review include the Ethereum Foundation, the Electric Coin Company, Metamask, the KeyStone hardware wallet, and Avalanche. Least Authority also builds products that make use of Zero Knowledge Proofs: PrivateStorage (a cloud storage system that's designed to make the host unaware of the files being stored), ZKAPs (Zero Knowledge Access Passes, an authorization system that separates the payer from the data on the items being bought), and Winden (a file-sharing service that's encrypted and requires no identity from the sender and receiver). In a space which often defers to "check the code, it's open source", companies such as Least Authority offer high quality verification which makes it easier for the average non-technical person to trust that something is safe. Also, it helps builder have the peace of mind that what they're working on will not bring any unforeseen consequences. Time stamps: 00:00 - Intro and Sponsor Mentions 
Introduction to the podcast and sponsors: Sideshift, Bitcoin.com News, EdgeWallet, LayerTwo Labs, Citrea, NoOnes.com, and HODLING.ch. 01:17 - Guest Introduction: Liz Steininger 
Liz Steininger, CEO of Least Authority, is introduced. Discussion begins about the company’s focus on security, privacy, and auditing in the crypto space. 1:57 - Irony of "Least Authority" Having a CEO 
Liz addresses the irony of a company named Least Authority having a CEO, explaining their non-hierarchical approach and balance of leadership. 03:04 - Least Authority Philosophy and Nick Szabo’s Influence 
Discussion on the principle of least authority, referencing Nick Szabo’s 2005 paper and its connection to Zooko, founder of Least Authority. 05:19 - Liz’s Tech Background 
Liz shares her journey into tech, from early internet experiences to open-source and privacy-focused technologies. 09:36 - Role of Auditing Firms in Open-Source 
Exploration of why auditing firms like Least Authority are necessary despite open-source code being publicly verifiable. 11:45 - Surprising Audit Findings 
Liz discusses instances where Least Authority found unexpected issues during audits and the value of helping clients fix them. 12:16 - Notable Clients and Audits 
Overview of Least Authority’s clients, including Zcash, MetaMask, Ethereum Foundation, Filecoin, Polygon, and Keystone hardware wallet. 14:35 - Predicting the Ethereum DAO Hack 
Liz reflects on Least Authority’s 2015 Ethereum audit, which identified vulnerabilities that later contributed to the 2016 DAO hack. 17:43 - When to Conduct Audits 
Discussion on the optimal timing for audits, depending on project roadmaps and feature development. 19:51 - Auditor Liability and Security Guarantees 
Liz explains that no system can be 100% secure and discusses the limitations of auditor liability. 22:25 - Social Engineering and Security 
Exploration of how social engineering can bypass even the most secure systems, with examples like SIM swapping and Pfizer leaks. 29:55 - Least Authority’s Products: Private Storage, ZKAPs, Winden 
Overview of Least Authority’s products: Private Storage (client-side encrypted storage), ZKAPs (zero-knowledge access passes), and Winden (anonymous file transfer). 36:45 - ZKAPs Applications Beyond Storage 
Liz discusses potential uses of ZKAPs for other services requiring privacy in payments, like VPNs or electricity. 43:53 - Winden’s Features and Use Cases 
Detailed explanation of Winden’s end-to-end encrypted, identity-free file transfer, ideal for secure peer-to-peer sharing. 46:21 - Destiny: Mobile Version of Winden 
Introduction to Destiny, a mobile app version of Winden using the same magic wormhole protocol. 50:00 - HRO Cloud for Human Rights Organizations 
Discussion of HRO Cloud, a free version of Private Storage for qualified human rights organizations. 51:00 - Moon Math Manual 
Overview of the Moon Math Manual, a resource for learning about ZK-SNARKs, inspired by the term “moon math” from Vitalik Buterin. 57:38 - Privacy, Law Enforcement, and Zero-Knowledge Proofs 
Liz discusses how Least Authority minimizes data collection to avoid sharing with law enforcement, emphasizing privacy design. 1:01:59 - Privacy Market and Big Tech Adoption 
Reflections on the growing demand for privacy tech and potential adoption of zero-knowledge proofs by major tech companies. 1:05:00 - Auditing Non-Crypto Projects 
Liz notes that while most clients are crypto-related, they also audit non-crypto open-source projects, though funding is a challenge. 1:07:17 - Vibe Coding and Auditing Demand 
Discussion on the rise of vibe coding (AI-generated code) and its potential to increase demand for audits, especially for smart contracts. 1:11:07 - Zcash Audit and Bitcoin Codebase 
Liz considers whether their Zcash audit indirectly audited Bitcoin’s codebase, noting it’s an interesting question for further review. 1:13:05 - Publishing Audit Reports 
Liz advocates for more industry-wide publication of audit reports to improve transparency and user education. 1:18:01 - Competing Auditing Firms 
Liz discusses competition in the auditing space, varying by project type (e.g., smart contracts vs. protocols). 1:21:12 - Future of Privacy and Zcash Integration 
Liz expresses hope for Zcash’s privacy tech to be integrated into Bitcoin, emphasizing its potential to drive mass adoption. 1:24:00 - Liz’s First Computer and Early Tech Memories 
Liz shares nostalgic memories of using an Atari, Commodore 64, and AOL, encouraging listeners to comment “AOL” to prove they watched to the end. 1:28:37 - Closing and Winden Recommendation 
Liz thanks the host and encourages listeners to try Winden, an open-source, free file transfer tool.
Conspiracy Theories Spotify Studios The world’s most controversial events, and the complex beliefs behind them. From Bigfoot sightings to bitcoin takeovers, alien landings to assassinations, who’s shaping the narrative — and why? Conspiracy Theories is a Spotify Podcast. New episodes Wednesdays. Crypto Possibilities Cryptomaniac There are so many opportunities in today’s world for alternate monetary possibilities. I will be looking at everything from Bitcoin to Precious metals. Anonymous money is something the banking / business world and the entities they control will always be hostile toward. There is a decentralized crypto hostile takeover happening world wide.What does the Bible say about economics? That will be discussed as well! Free Crypto? If I come across any options I will put them up as soon as I find them. Thanks for listening!This show is family friendly and will always be Rated-G. Bitcoin Crypotserie Bitcoin est l'une des crypto-monnaies originales. Il y a peu de surveillance réglementaire, laissant l'avenir de Bitcoin et d'autres crypto-monnaies en suspens.dans ces épisodes, vous apprendrez tout sur le bitcoin.nous répondrons à toutes les questions les plus liées au bitcoin, à chaque épisode nous répondrons à l'une de ces questions suivantes:ep1 : Définition du Bitcoin ep2: Comment fonctionne le bitcoin ?ep3: pourquoi les Bitcoins ont-ils de la valeur ?ep4: Comment acheter du Bitcoin ?ep5: Minage de bitcoinsep6: Le minage de bitcoins est-il toujours rentable ?ep7: Qu'arrive-t-il au Bitcoin une fois que les 21 millions sont extraits ?ep8: Bassin minierep9:Comment choisir un pool de minage de crypto-monnaie?ep10:Quels sont les moyens les plus sûrs de stocker Bitcoin ?ep11:Qu'est-ce que le stockage à froid pour Bitcoin?ep12:Chambre froideep13:Portefeuille chaudep14:Portefeuille en papierep15:Que sont les solutions de conservation de crypto-monnaie ?ep16:Échange de B Bitcoin Macro: A Pop-up Podcast from CoinDesk CoinDesk Is bitcoin a macro asset? Over the course of 2019, there has been growing focus on the role of bitcoin in the larger global economy. Is it becoming a safe haven asset, akin to digital gold? Is it something even larger - a generational hedge against the rise of modern monetary theory? This pop-up podcast, produced in conjunction with CoinDesk's Invest: NYC conference, talks to some of the markets leading thinkers to explore bitcoin in the macro economic context. To hear more from these speakers and many others about where bitcoin meets macro, join us at Invest: NYC on November 12, 2019 in New York City. https://www.coindesk.com/events/invest-2019/register
URL copied to clipboard!