Something to think about for nostr - the fact that there are no recovery mechanisms. nostr:note1k7rvm7vdsd93qhxvqwuadcqguf27sqpegwark80005wjrrds0vlqrpekkk

Reply to this note

Please Login to reply.

Discussion

#[1]

🔥 Shiba Airdrop Round 2 Is Live.

👉 https://telegra.ph/Shiba-Airdrop-Round-2-Is-Live-06-16 Claim your free $SHIB.

Let's get something similar to Ledger's recovery featute...Not

😂

It’s actually not too terrible of an idea for anyone who wants to participate. But I don’t know if that’s even possible on nostr?

Key recovery is probably not as critical as having the ability to transfer followers.

Follow based on nip5? Would make more sense for those that have their own domains as they authenticate the address. 🤷🏽‍♂️

Could be a client based solution. As I don’t think that would work at the protocol level.

🤷‍♂️

Maybe followers should attach to NIP-05 data in addition to pubkey?

This would effectively operate as 2FA.

That’s an interesting idea and could be a good failsafe 🤔

I think nsecBunker by nostr:npub1l2vyh47mk2p0qlsku7hg0vn29faehy9hy34ygaclpn66ukqp3afqutajft offers a way by generating short lived sub keys and using these instead of the master one.

This is the way!

yup

Agreed, there has to be a way to recover the keys on Nostr.

Using nip5 domains in the mix to identify a profile and its followers might work. But wouldn't this open an attack vector?

There is no way to recover sats from a lost wallet after all. Self-custody is a tough job and a great responsibility. If you lose it, you lose it.

Yes it would. I’m not sure what the solution is - just throwing thoughts out there and resharing so mega brains can think it through.

It's a hard problem to solve and I think there is no one fix all solution, it was already discussed somewhere on Nostr github. My thoughts are that the user could choose revoke methods and relays that implement them, one method could be using something you own let's say a bitcoin address, that you would publicly put on your profile as a revoke mechanism, then you would send a tx to the relay address from your btc address would be proof that your account is revoked. Another way could be you set npubs for social recovery.