Dear Devs, is there a way to create a business nsec where - let's say a team of four - can access without sharing keys in emails or DMs? Like maybe if there was a creation of a business nsec, each user will receive their own encrypted message when they open on their device?

Maybe an external web page where one person submits a request and adds the npubs they will allow to receive a unique nsec for this business nsec?

Like a second nsec for the master/main sec?

Does this make sense? Lol

Reply to this note

Please Login to reply.

Discussion

This is where that nostr private key hardware comes in handy. But one fully built. Turn on and use. Not buy it go to github download this code flash this here put -'":: there hahahaha FULLY BUILT NOSTR HARDWARE

nostr:nevent1qqsf8gygc77mcjd5fhcgk77qkve87u0rmdgdg53uake7jsmn3yrf6espr4mhxue69uhkummnw3ezucnfw33k76twv4ezuum0vd5kzmp0qgsfhsknfhw6s0v59g0a6d48fple4tk8grdjf6newvkepcur6xwjjjqrqsqqqqqpj2d90k

#asknostr

How about a company that holds NSECS. So the NSEC is originated and held by the company and since it was never exposed to anyone, it is then a commodity. Basically reverse engineering a centralized key holder for a decentralized protocol. I would then have a company to call to change my forgotten password, etc, grant other people access.

It would be completely centralized of course and subject to legal stuff, but a lot of marketing maybe doesn't care about censorship. it would be one way that an NSEC becomes a digital estate with some value.

the company would have insurance to make sure they don't expose NSECs to anyone upon pain of paying a large sum.

Maybe a remote signer is what you’re looking for?

The idea being that your business nsec would be only be on one phone or computer, then you would authorize it to sign events coming from other apps and devices.

The spec is nip-46: https://nips.nostr.com/46

Remote signers that come to mind would be:

(Android) Amber by nostr:npub1w4uswmv6lu9yel005l3qgheysmr7tk9uvwluddznju3nuxalevvs2d0jr5 : https://github.com/greenart7c3/Amber/releases

(Web) Nsec.app by nostr:npub1xdtducdnjerex88gkg2qk2atsdlqsyxqaag4h05jmcpyspqt30wscmntxy : https://nsec.app

(Server) nsecbunker by nostr:npub1l2vyh47mk2p0qlsku7hg0vn29faehy9hy34ygaclpn66ukqp3afqutajft : https://nsecbunker.com

I would like remote signers to have a QR code to sign air gapped logins to desktop applications.

they often do.

nak bunker works

What if you had a card you could use to sign events.

nsecbunker allows something like this. also frostr uses some fancy frost threshold signatures. I haven't tried any of this, so not totally sure if it meets your requirements.

Ty for the information. I will look into it.