is there a reason we’re not calling the nsec a password? probably should just do that i think…

Reply to this note

Please Login to reply.

Discussion

#[1]

a key and a password are two completely different things, hopefully #[2]​ can go more in-depth on how so 💜

i mean… right now maybe. i think it makes more sense to just force the term password to change meanings.

As my cryptography professor said, cryptography is hard enough without conflating terms. A new era will require people to understand risk and take new measures to secure their nsec. They will adapt or they will stop using nostr. My guess is the majority will adapt.

Nobody asked me, but the primary difference in my mind is that you can’t reset an nsec without loss of identity if it is compromised. 🤔

Is the private key of your bitcoin wallet a password?

definitionally, probably not. usablilty-wise, they share some of the same flaws.

nsecs and btc private keys that is.

Agree that nsec is not intuitive, but password brings a lot of problematic associations. One being that it can be changed or reset, when in fact, losing your nsec means you’re totally locked out

i think nsec not being intuitive causes problems, sadly. 😔

what problems do you think it’ll cause?

if it’s not called a password, there will be an increased risk of people sharing when they shouldn’t.

no matter what it is called, people will obliterate their accounts too often by loosing it.

nsecs will end up being held by companies on servers and made accessible with a 2-of-3 “multisig”. exactly like bitkey.

If the social media use case of nostr really catches on, most people will probably just use a custodial client that actually has a password

yea. maybe it is low enough stakes that people can just store their nsec in password / key managers. idk

nostr:note1k03fx55hs8k4dg95uvh9rd8rvten3gfyjxsfnmdpxlylhkrc8dgqa7w4qd