Once I carried out a Silent Funds ship on testnet, I used a Taproot key-path spend as enter. In that case, the sender’s public secret’s immediately readable from the witness.
However I am unsure this holds for all enter sorts. For instance, in a P2WPKH enter the pubkey is within the witness, however for a Taproot script-path spend it will not be immediately recoverable.
Does BIP352 require the sender’s enter pubkey to be recoverable? And if the sender makes use of an enter kind the place the pubkey just isn’t seen, does the protocol break down?
