People complain about nostr DM metadata being visible when theyโ€™ve always been; itโ€™s just that before it was only NSA/tg/fb who could see it, now everybody sees it

Reply to this note

Please Login to reply.

Discussion

More transparency ๐Ÿคฃ totally agree

๐Ÿ’ฏ

Pablo, what if we build dms the same way we do with private zaps now? It would also hide the sender, next to the message.

there is also bot ๐Ÿ˜…

I love this point

Also before we canโ€™t even be sure if itโ€™s e2ee

โ€œTrust me, broโ€

No, that's not how Signal works

Yes if you go to proper lengths to hide metadata like a Signal than sure, but pretty much everywhere else is just as bad or worse than nostr. At least once we have auth for DMs this wonโ€™t be completely wide open.

had a shower thought the other day: how hard would it be to implement the signal protocol for nostr DMs? iirc, punkt m02 phone implemented the protocol in a custom client called pigeon

I think itโ€™s possible.

nice, gonna do some reading on how the protocol works and play around with it. would be a huge win if possible

Why though, why should Nostr solve what Matrix protocol already did extensively, Nostr shouldn't reinvent private messages or rooms, ammend and incorporate what's already great out there.

The simplicity argument won't hold forever as you tackle hard problems.

Alternatively we can use a decentralized discoverable identity that abstract both Nostr and Matrix and much more, so users and clients use what the web already has.

Shameless plug etc pkarr.nuh.dev

if you like matrix than use matrix. I think itโ€™s a terrible protocol and wouldnโ€™t touch it.

Is it terrible or is it advanced and you weren't there from the ground floor? Can you see a way to deliver the same features without becoming as complex? Or is Nostr going to stay forever as simple as it is now to keep the simplicity claim?

There is a good chance Nostr will stay resistant to features (Nip26 not widely adopted nor any alternative), but then the question is how are we going to have personal data stores, more user friendly identity and private chats and VoIP?

My answer is as I said, an identity that abstracts Nostr and email and others, so clients that want these advance features can actually compose them.

The good news is, that is already possible without the permission of any protocol or client. But it will expose interoperability for what it is; very political.

Here is my ID served fresh from Bittorrent DHT, and kept alive by refreshing every hour, I also validated that a single 4 cores vps can keep 120k records with ease.

This is the most simplest solution for decentralized discovery ever, it gets hairy any direction you go. (Strong opinion held lightly etc)

https://pkarr.nuh.dev/?pk=o4dksfbqk85ogzdb5osziw6befigbuxmuxkuxq8434q89uj56uyy

But, there are ways to hide more meta data. And itโ€™s important to address.

๐ŸคฃIn the past, only the people in the monitoring room could see it, but now it is broadcast live, but no one knows the specific content. In the past, only authorized people could watch it, but now anyone can watch it. It may be the difference in privacy

Also, nostr:npub180cvv07tjdrrgpa0j7j7tmnyl2yr6yr7l8j4s3evf6u64th6gkwsyjh6w6 had this smart idea of leveraging signal as part of DM or something of that sort. I canโ€™t for the life of me remember the details now but I thought it was pretty brilliant then

Yes, that is a reasonable thing to complain about. What's your point?

๐Ÿคฃ