Global Feed Post Login
Replying to Avatar Blake

Cool. I have a (poor man’s) “Login with Nostr” prototype for Ruby using cookies for sessions.

Why does this matter? You can log into websites without sharing your private key, while still proving you have access to it. Impersonation is not possible.

Most Nostr sites today just load your pubkey and then ask to sign posts as you publish them - that’s fine too. The goal here is to only show content for that pubkey - so proof you hold the private keys are required sooner (basically just a normal login).

Avatar
fiatjaf 2y ago

#[0]

How do you do that from your phone, though?

Reply to this note

Please Login to reply.

Discussion

Avatar
Blake 2y ago

Using a mobile browser extension works

Thread collapsed
Avatar
dolu 2y ago

I'm not sure, I didn't check how it was working. I don't have so much time right now.

But calm down guys! I'm coming soon with a login spec + PoC

Thread collapsed