How can I know if its safe to put my npub into a #nostr client? How do we know for sure if one is malicious or not?

Reply to this note

Please Login to reply.

Discussion

Don’t trust, verify. Most clients are open source.

Unfortunately i cant read code, let alone the code of a whole client.

Get it directly from github

Can malicious software not be on github?

Ok not if you get from the developers profile

I guess what im saying is how do we know the main developers are not malicious? What if a client is a honeypot?

Exactly why you dont try every client..

Could always spin up a new account for testing with other clients. Also, as long as your nsec is not being used in other clients, you have a bit more of a safety net.