Per Kind signer approvals are great for the Pros but I think it's completely unnecessary for regular users. Maybe not even the Pros use per kind approval screens regularly.

Somebody could design a simpler, fully offline EasyAmber app that simply holds the key safely, accepts a one time permission request for each app and then automatically approves everything. The main screen is just a collection of current sessions open.

No, your keys cannot leak in that way. Literally impossible.

Reply to this note

Please Login to reply.

Discussion

Yes. Amberlite.

Yeah, we need something like... Amber?

I prefer copypasting nsec into a single app that's been decently vetted versus having to copypaste it into ten different apps. That's the main usecase for me and that's all I need from EasyEmber... 🙂

I just use the approve-everything setting in Amber. If it does weird stuff, I can see it and delete it, and stop using the app or send a bug report.

The need to control every little thing quickly makes Nostr a nightmare to use.

That said, I prefer stuff like read notifications in cache. Find it annoying, as an event, as the read-status fluctuates.

Could pull an oauth permission grant UI:

This apps needs the following permissions to work: a, b, c

These are optional permissions:

( ) checkbox for the optional permission: explanation from the app

Bonus points if the app can somehow attest its own identity/source so the keychain app can slap a WoT score or something like that.