Nice one. A good edge case example.

The answer is Alice cannot know which Day 2 post is real and neither can any Nostr client. CRI does not claim otherwise. What CRI guarantees is that the forgery cannot extend past the Day 3 rotation, cannot regain authority, and cannot affect future history.

Reply to this note

Please Login to reply.

Discussion

Nice. So with CRI, one can also gain plausible deniability by routinely publishing old secret keys after rotation. Relays could maybe come up with a way to label suspicious events or reject them outside a certain date range bounds (I think this is NIP-22) but that still wouldn't guarantee that a note came from a given individual who routinely publishes old secret keys.