How about:

1. Encrypt message with shared symmetric cryptography. Use key "k".

2. Enrypt "k" with each participants public key.

3. Send event with encrypted message and encrypted keys. It shall also contain the public key of participants.

Reply to this note

Please Login to reply.

Discussion

Also I would encrypt with own public key in step 2, so the sender can also see it later.

Could someone review this idea?

Can I make a NIP proposal for this?

Please do. As your post lacks details on how it would work.