Replying to Avatar once_aphysicist

Just presented my 2 hr hackathon project at #btcpp privacy edition, Riga!

https://github.com/feuplebian/git-futz

With the recent attacks on developers of cypherpunk software bythe state and other malicious actors, developer privacy is becoming more important.

So I developed a command-line tool to fuzz location and time information from your unpublished git commit messages before you push your commits to a public branch.

Comments and suggestions welcome :)

This is cool. A few years ago l, all my commits had a start of day timestamps but pgp signing yubikey and qubes proxy got in the way so I stopped.

nostr:nevent1qqsgxylcy25vmn3qg87hfljc3vngd4jcpfpdqhmg0t5fafjr5pqwc6gppemhxue69uhkummn9ekx7mp0qgspm4ue96swe0d8fqxwa56hfrpk2453zv7gc790j3lays5emw85s8crqsqqqqqpkcj8je

Reply to this note

Please Login to reply.

Discussion

Thanks for bringing up signing. That's indeed another source of privacy leak. I'll have to think about how to approach this :)

I think what we need is unattended signing, or probably more likely, batch signing (sign once no matter how many commits) 🤔