πŸ“’ Releasing nsecBunker 1.0

Codename: "Curb your YOLO"

nsecBunker is a signer you can use to stop pasting your nostr keys in a million places with the sooner-or-later key leakage that will inevitably happen.

Put your keys on nsecBunker and, thanks to the magic of NIP-46, use them from any NIP-46-compatible app without giving them your precious nsec.

πŸ‘‰ The best part?

Each *application* can be inidividually scoped to get it's own set of permissions.

πŸ‘‰ What does that mean?

Well, with nsecBunker you'll be able to grant permissions to, say, the Coracle client, to sign short-note events, but perhaps you don't want it changing your profile information.

Or you might want to give access to another team member to zap everybody on Nostr like nostr:npub1jg552aulj07skd6e7y2hu0vl5g8nl5jvfw8jhn6jpjk0vjd0waksvl6n8n has been doing but you don't want them getting access to read the private DMs.

This is HUGE for companies, as a company can't simply grant blank-cheque, un-auditable permissions to dozens of team memebers.

Starting today, you can now BUY an nsecBunker for a few thousands sats a year, or just deploy one yourself following the instructions in the website.

Get started πŸ‘‡

https://nsecbunker.com

Reply to this note

Please Login to reply.

Discussion

Awesome

Pablo help! Your girl here is clearly doing something wrong πŸ˜…

Here you go, dear: https://lnshort.it/nsecbunker

Thanks Tony! But its not exactly that what I need πŸ€™

Not sure which step you’re stuck on. Ask away, will be happy to guide you

πŸ€” if you reload you still see the same thing?

Yeah, I remember you said in the first video to reload… maybe it’s safari?

It would be great if the admin web interface was also available locally instead of remotely. I don't have an issue using command line, but it's not for everyone. Especially with people using node platforms and web UIs to manage them. It's familiar. Having this packaged as a docker container with a local web interface would be amazing. Is there a plan to do this in a future version?

Yes, 100%

That was my intention from the beginning, I just decided to cut some scope, or I wouldn’t have released ever :-)

But 100% the local admin interface is coming next

Thank you, Pablo. πŸ«‚ This will be beneficial to so many people.

πŸ”₯πŸ”₯πŸ”₯πŸ”₯πŸ”₯

β€œcurb the YOLO” πŸ˜…πŸ˜…

Could I use this to allow people to sign in using their nostr npub in Wordpress for a coffee club I’m starting?

If not, is there some project you can point me to? Currently they have to use email and pw, but would love to sign in using npub πŸ€πŸ€™

PS I’m not a coder…ChatGPT and Google have built my sats.coffee site πŸ˜‚

Ideally, this whole thing is one click deployable into your umbrel or @start9 node

I think I understand the huge advantage for companies etc., but on an individual level could you provide the advantages of nsecbunker vs using an extension like alby and nos2x?

I’m capable, but not a dev etc. and would love to understand the reasons. Thanks!

You could use it to log in to PWAs, which is currently not possible with extensions on iOS.

You could use a target key for separate tasks, like keeping notes of things you don’t want to flood your feed with or tag that account whenever you want something noted.

Child control - create target keys for you kids and fine tune their interactions with Nostr

Burner accounts..

Ah, thank you! A family nsec bunker sounds like an awesome use case. I guess I could do the same thing to manage a classroom of students?

YES!

Legend! -- Freedom tools ftw! -- Let's get it fam! -- This is the way.

Huge, going to add support to coracle asap

πŸ€™

This is awesome pablo! I use alby for this in the browser. What are the advantages/disadvantages of nsecbunker over alby?

As far as I understand it, nsecbunker can be on another device than the client. Alby must be on the same device.

yeah, nsecbunker can be running on any device and accessed remotely from anywhere

on my way to Miami I published events from the plane signing the events from my LN node back home

Are you opening a port? Using upnp? Or a tunnel like ngrok?

nsecbunker connects over nostr, so it can run behind a firewall just fine

Fuckin hell! That's impressive though as long as it works, but the lengths we go to avoid opening a port is crazy, meanwhile Bittorrent have been using upnp like there is no tomorrow!

There is still the problem of discovery (when suddenly I don't have common relays with the nsecbunker service provider for some reason).

Using Nostr as a replacement for good old web platforms instead of decentralized DNS (Pkarr) and opening port when necessary, sounds as extreme as using p2p stack and holepunching, just more browser friendly.

I need to look more at pkarr; I haven’t tried it since you released it a few months ago but I’m intrigued

#[7]

Well, now is a good time because I just got it to work from behind NAT.

Long story short it is a decentralized root DNS server, you can publish any Resourfe Records for a ed25519 public key and anyone can resolve it from anywhere.

Limitations: it is slow so you need to cache it aggressively, and it is ephemeral so someone needs to keep republishing it every hour or so.

```

npm i -g pkarr

pkarr publish

```

Once you are done you can run the pkarr keepalive command, or just give me the key and I will keep it alive for you.

Plenty of work can be done to make it a robust system and add DNS over HTTPs, but I feel getting feedback is as important at this stage.

This is great! Been waiting on something like this for a while :)) Thank you sir! Just having a problem - not able to create a new key. Anyone else?

Ugh what am I doing wrong.

Created three, 1 hour trials now to see if it was the site but it's blatantly me... Tried multitude of browsers. nos2x + getalby to sign. Can't get anywhere! Anyone able to assist?

Really strange when I close the tab, open up again and then this pops up 20% of the time, maybe 10% actually? I'm baffled and mind broken. Broggled.

Requesting an honorable mention for my guide on the nsecBunker web page πŸ˜…

Great work, congrats! Incidentally, on login screen the "build your own" button seems broken to me:

Here's the link, btw πŸ˜‰: https://github.com/kind-0/nsecbunkerd

Would it make sense to invest some time to build an nostr:npub1aghreq2dpz3h3799hrawev5gf5zc2kt4ch9ykhp9utt0jd3gdu2qtlmhct app for that? πŸ‘€

I 100% will do it

Great Pablo! I was so close to offering help with it but you da man πŸ§‘πŸ˜…

True πŸ™Œ

Start9 >>>

oh an @npub1aghreq2dpz3h3799hrawev5gf5zc2kt4ch9ykhp9utt0jd3gdu2qtlmhct app would be awesome 🀩

Day zero of nsecbunker on my raspiblitz.

1. installed docker on my raspiblitz.

2. tried to install nsecbunker container.

No install available for arm64.

messed around with npm install. hopefully didn't break anything.

It's OK, I can wait. between nostr:npub1l2vyh47mk2p0qlsku7hg0vn29faehy9hy34ygaclpn66ukqp3afqutajft and nostr:npub14tq8m9ggnnn2muytj9tdg0q6f26ef3snpd7ukyhvrxgq33vpnghs8shy62 I am sure nsecbunker will make its way to raspiblitz soon enough.

I need this on Windows. Browser Extensions are neat, but I want to use native clients eventually; a browser can only do so much. o.o

How can I delete keys or tokens I have created on nsecbunker.com?

Click the revoke button on the users list

Tokens can't be revoked (yet?), singe they are single use, by definition, just use it and then revoke the user?