Password managers are the default, and they operate between desktop and mobile clients. No need to pass anything between different devices manually. Autofill within browsers handles also the transit from the manager to browser’s field without clipboard.

Passkey or true delegation would be the ideal.

But 🤷‍♂️ if the nsec delegation is not feasible.

Bluesky has those limited passwords and they are nice. Revokable tokens on Mastodon instances with oAuth2 are convenient, too.

Nostr should use normal methods if it wants to become mainstream.

Reply to this note

Please Login to reply.

Discussion

On Apple ecosystem, this works locally and without lockups from vendors: https://strongboxsafe.com/

Very few people even know what password managers are. If you have to onboard them into a password manager before you can onboard them into Nostr, you already lost them.

Apple has the native keychain so that’s the default option and it’s well integrated.

https://appleinsider.com/articles/21/12/29/how-to-use-icloud-keychain-apples-built-in-and-free-password-manager

But to answer your question: 1)

My bank uses QR code on browser that seems to be dynamic (moving pattern) and you point your mobile’s authentication app with camera to it and it let’s you in.