also just to mention, some of the relays that need auth, are just asking for a key. ANY key.. so you could auth with a different key, and then if the relay is open like this, send and req any valid events on that connection, except DMs as those require auth by your main key.
With all this authorization crap, we're going back to the era of the WWW, and even worse.
Please Login to reply.
Once nostr embraces CORS, I'm out.
blame websockets. traditional methods of rate limiting will not work here (im talking http)