What’s our solution to mobile logins?
Discussion
I think it’s nsecbunker so far
Nsec bunker is paid?
nostr:npub1l2vyh47mk2p0qlsku7hg0vn29faehy9hy34ygaclpn66ukqp3afqutajft can correct but I believe...
1. nsecbunker is FOSS – https://github.com/kind-0/nsecbunkerd Looks like the license is non-commercial though.
2. there is a hosted version which is the paid version that nostr:npub1l2vyh47mk2p0qlsku7hg0vn29faehy9hy34ygaclpn66ukqp3afqutajft runs.
3. Yes, if the one paid version gets too big, it'll be a centralizing force.
Also, doesn’t nsecbunker basically act as a central point of failure?
I guess? It’s better than pasting your nsec in any app that asks for it, though.
If I’m being honest my move so far is just pitchforks and fire
It would be great if it was easily maintained on mobile and used as sort of a pinging app instead of adding manually. Not sure how that would work exactly.
And must be free or won’t gain any meaningful adoption imo.
The PWA craze made it clear to me that nip-07 would not be sufficient on its own but I feel like a perfect solution has yet to be found. Key management is hard.
I wish I could click login then amethyst opened and I could sign with it
Yeah some sort of Authenticator would be great
Password manager I guess.
Amethyst 😅
Nos2x on kiwi browser
This is how I'm imagining it:
- Email+pass+lock generates pair.
- Or much more preferably "keystr" (imaginary app), nostr accounts management app (think bluewallet).
- Login with whatever: generate keys based on email from that whatever in combo with a password or lock (by lock I mean numbers).
- Normal generate keys.
https://nostrcheck.me/media/public/nostrcheck.me_5365839440447342661689312807.webp
Could work 🤷♂️
But what’s the point of email if we don’t use it for nsec recovery?
Email because that's what people are use to.
For me personally I'd just have that "Login with Keystr" button only, but the rest of the options is for the masses.
You still need an nsec to sign. Where does email fit into this? Recovery?
The nsec get regenerated everytime you use the same email with the same pass and/or lock. And like what we have now, the nsec is stored in the app once added in, purged once you log out (added back again, the same nsec, once you use the same email pass lock combo to regenerate the same nsec)
Been using Nostore with Safari
signing with your smartwatch?
Password manager.
We need to have password managers recognize nsec as a password?
Otherwise manual entry
Only really works for 1 client too.
?cid=2154d3d7hf6jitkvzug73bym79e1mn6fo91xtpimqi32pqoz&ep=v1_gifs_search&rid=giphy.gif&ct=g
