Nostr workflow flaw unless I'm unaware of a solution.

If an account is shared amongst multiple people (ie: an organization) how do you revoke access if everyone has the nsec?

Reply to this note

Please Login to reply.

Discussion

1. dont share nsecs

2. any revocation protocol will be similar to delegation protocol (here's a new nsec, use that)

3. imagine "delegate" info in a kind0 tag or other replaceable. any messagess posted by delegates should be shown as if they came from the main

4. revocation is simple, change the tag

there is probably already an nip for this.

you would use NIP-26 delegation, though now it seems like it's DOA.

lol, i'm literally describing this right now in a document I'm writing getting ready to launch nsecBunker

Do it!!