Replying to Avatar Egge

Thanks to nostr:npub179e9tp4yqtqx4myp35283fz64gxuzmr6n3yxnktux5pnd5t03eps0elz4s calling me out on the ease of use of npub.cash, I am working on a OTP type login.

The user will enter their pubkey to login. The server generates an one-time-password and send it to this pubkey in an encrypted DM. The user can then enter the OTP in the browser window and obtain a session token.

This will dramatically increase the UX on mobile devices and offer a more sure way to login vs. raw nsec.

What a cool concept!

Could this mechanism be a complete replacement for browser extension signers like Alby?🤔🧐😳

Reply to this note

Please Login to reply.

Discussion

No, unfortunately not. This works only for apps that are independent from the nostr protocol because the session token can not be used to sign nostr events.

Its only useful for authentication

Thanks for answering!🙏🏻😀🫂💖😆👍