How do we get here: your favorite nostr app prompts you to migrate your old email logins to your nostr profile.

Reply to this note

Please Login to reply.

Discussion

I don’t understand what you mean. Migrate email to nostr address? What does this mean?

My note was inspired from a prompt by protonmail to change my Bigtech co non-proton login email to protonmail instead. What protonmail product team displays here is the importance of owning their customer’s logins to other tech services.

What if: there is a solution to replace your e.g. amazon email login (protonmail, gmail, or other) with a nostr keypair with a click of a button?

How do we get here?

Does this necessarily rely on e.g. amazon adding nostr support?

is that something you'd want anyway? If your key leaks then everyone has access to your email? Or you'd pair it with 2FA?

I guess I just don't see the point of owning your login to someone else's services.

using your nostr npub as a login identifier, instead of needing to give an email address

time & network effect

Password recovery & some information is sent out to that email, so the npub would need to trigger DMs or something like that

Also you would need a way to verify the npub belongs to you, without increasing risk of key loss

Could it perhaps help avoid phishing scams if you only accept certain notifications from specific trusted npubs, similar to how Damus separates DMs?

Why not use the NIP-46 login that npub.cash has? That way it takes care of the security aspect of sharing your key and you also have control over which apps have access as well as permissions.