This is awesome. Definitely cleaner than my solution of concatenate and generate a key and hope the user never forgets their email+password 😂

nostr:nevent1qqsdzer5gwxhcmwk5as5snys2dxl2zr2arly067wdvka638djpgr5uspp4mhxue69uhkummn9ekx7mqppemhxue69uhkummn9emkjm30qy28wumn8ghj7un9d3shjtnyv9kh2uewd9hsz9rhwden5te0wdmkjumn9ehx7um5wghxcccppemhxue69uhkummn9ekx7mp0qy2hwumn8ghj7un9d3shjtnyv9kh2uewd9hj7qghwaehxw309aex2mrp0yhxummnw3ezucnpdejz7qgjwaehxw309ac82unsd3jhqct89ejhxqgkwaehxw309aex2mrp0yhxummnw3ezucnpdejqzymhwden5te0wfjkcctev93xcefwdaexwxesrn2

Reply to this note

Please Login to reply.

Discussion

It’s a nice idea and a great flow, but it suffers from some problems:

Low entropy

You are still giving your nsec to a million apps (here only one party has it)

No possibility of “password recovery” here recovery can be achieved