Global Feed Post Login
Replying to Avatar jb55

password managers generate a unique password for each website. this means if one of your passwords leaks it won't compromise any of your other website logins.

nostr-login is a regression: if you leak your nsec then they have access to every website that you've ever logged in to.

using your npub for logging into everything is a really bad idea security wise, please be conscious of this before implementing or pushing this as a login solution to websites which may contain sensitive information.

Avatar
JohnyDoor 1y ago 💬 1

it's enough to leak your Email password and all your other website passwords will be changed.

Reply to this note

Please Login to reply.

Discussion

Avatar
Lennart 1y ago 💬 1

Not if you use 2FA.

Avatar
kepford 1y ago

2FA doesn't fix using the same factor everywhere else.

Thread collapsed
Thread collapsed