Avatar
Javier
54286b98e6f570a8cb599b40f461dbbc82d62bbebdec8ea6c34a260f3debc100
Writing "The Shaggy Report" | Craft Beauty in the Chaos: Personal reflections on woodworking, faith, life, entrepreneurship, culture, and family—changing how we see life, one storm at a time.

nostr:npub1lrnvvs6z78s9yjqxxr38uyqkmn34lsaxznnqgd877j4z2qej3j5s09qnw5 my ideal scenario is that when you create your nsec, you are give lets say 5 more. in order to use any of the remaining 4 you need to burn the other one and input the one that are of have being burned.

e.g.

some one hack me and stole my nsec from my vault, took my hard note pad, or a client fail...I can input nsec#1 + nsec#2 and from that point on nsec#1 is not. usable any more... not sure how possible is that...but it will be nice.

Just staring Hack The Box cyber courses... out of the bat the note taking apps was among first topic.

Zero experience with them all, but just as with passwords manager and Keeypass (old and established), I went with Cherry Tree, does not look appealing at all, but obsidian gave me the feeling that was one way street if I go for it...funny to read this now.

Do you use it for development or something else? any feedback regarding CherryTree is appreciated as I am on day 1 of using it and can change for sure.

My only concern is not loosing followers (which are almost none 😅) or whatever, is government or malicious actors impersonation. Of course the likelihood of me being a target is close to zero.

Most if us when we started the nostr journey we did it through a device or machine that likely could be compromise, and then again not all clients do best practices with nsec input.

I think is fair to say that there is potential for keys to be compromise from day 1. I am sure of my key back up and have no fear of loosing them, but if tomorrow they come after my faith or whatever belive I do fear impersonation. As I have seen in middle east, Venezuela, etc...I have no reason to belive any system I use is completely out of grab.

The internet is broken at a fundamental level starting with Domain providers and Internet providers.

I think a system with back up keys, to burn the original after a malicious attack could be beneficial, 100% on board on people learning to protect their keys, but this would make nostr even more censorship resistance....not sure if this is key rotation or not, just a thought.

Replying to Avatar OgFOMK ArTS

I use KeepassXC and another one. I use it on my phone and I hash and encrypt my archives. I have nearly 10 thousand different passwords. Any compromise and it's a singular loss of one site. My old Yahoo account was a great example. I was sim swapped and someone got in. Fortunately I did something early on that was so retarded that I called Yahoo and have them some information that I had that was totally bullshit but unusual.

You know the three question ruse to recover your accounts. Never give them the answers of your favorite dog. Moms birth city or other social engineering facts. These are easy to get. Instead come up with wildly fake and false information. Have a different one for each account. If you lose this for one account it doesn't matter. If you lose them all it doesn't matter.

I've been practicing this since the late 90s in various forms. I started with 7z archives. I change to anticipate what will no longer be developed. I use only only Open Source software that is easy to find.

A signing device for very infrequent use might be good until it fails. Often used it becomes lazy. I also use syncthing to carry things around. Again, I also change elements to minimize reproduction.

They only secure system is one that is powered down and unplugged. A Linux box or Unix or Windows or Mac in person can and will be hacked.

The iPhones that they bragged about not giving up the keys to can be (dd if out) to another storage medium and broken.

Eventually all will be revealed but there are no secrets to the Lord. The good news is that Satan can not read your mind and what is in your heart unless your allow him to by opening up doors via porn, alcohol, drugs (marijuana is a great one!).

But I'm retarded. Fortunately God loves us all and even retards can make it.

Shut down the spiritual pathways to demons and technically your opsec will improve tremendously. Any leaks will be fine because the temple you are in care of needs the most protection. All else is just your secular job and as long as it is in service to God it will be protected.

So be it.

This. 💪 by nostr:npub1ycwk4t5d6ct5lqz8t3z463hck0qymyugaqx8lcvmzywtjlpk8fgsyn937w . I started using KeeypasXC three months ago. its easy and good. NEVER heard about the secret questions answers tip... great tip.

About the same time I stated usimg Qubes OS, bassically multiple Qubes/VMs to isolate your life un segments..love it. Too much resources demand in my laptop, and feel I was dependent on the system for security and was missimg a leanring opportunity...now the OP comment about every digital box becoming open, a good reminder for sure for a normal, non tech user like me.

Love the gospel, opsec, and open source references! ha!

nostr:note1hmhw9w3rt20zgc269nad73s3x5uhsfezaq24ahn8kekvd6yhl3zspe8lv4

courios what cloud provider are you using for you server? or is home base?

This has been my biggest hang up on start experimenting. As I do not have the hardware to run 24/7 from home.

Have many open sources software that currently I am paying for managed services, like alby hub for example and others, that would love to try to manage my self.

Very interesting.... At least for what I have seen on how they move forward to self custodial, open source, etc... I would think they will work in giving users a way to take control on this as well. At least tutorial based.

This is downtime wa exclusive to the albyhub that is paid right?

Question:

- If one albyhub user is hosting his own albyhub, that would have not affect him?

- If it would still affect him, the solution is to host your alby hub AND your own node?

Really interested on this as planning how to set me bitvora haven relay...maybe I should consider a wallet relay as well.

GM

A daily reminder to wake up before anyone else in your house.

Things done over the weekend (staying away from Nostr!):

Installed a new OS on the desktop.

Installed Ollama and a few AI models locally.

Installed Goose AI Agent.

Practiced my terminal skills.

Things done so far today: 100 push-ups.

Checked Nostr.

Read the Bible (James 1) & prayed.

Checked Nostr again.

Learned about Docker vs. Podman and how to deploy a VPS... still daydreaming and thinking that one day I may be able to host the many open-source apps I’m currently paying for in managed services.

Posted a GM on Nostr.

Now waiting for my wife to come down to pray with me.

Ready for a new week!

GM nostr!.... Does any body remember the official nostr video that was on the nostr website,,I belive it was nostr.com at least year and half to two years ago?

Older guy in a garage talking about how people were bootstrapping this thing. I just can't seem to find it anymore.

I like GM...BUT if that is the heartbeat, nostr is doom. Positiveness is not enough to make this successful.

We need breaking news, in depth analysis, cutting edge, and original content.

I think the heartbeat is freedom. And GM make nostr a very pleasant place. But we need content.

I have question GM since the beginning. BUT, it has made me think about the contrast of legacy social media (self centered and negativity) vs a community that at least say GM....

So have forced my self, and now for the most part I find more value than not.

On the other hand, I would prefer to see a more healthy balance of content. We need more diverse and more global content. Morning notes are maybe a good vehicle to give news, thoughts and other things....so not a simple Gm maybe is the key.

Gn.

e.g. if I stop being primal premiun... not store anything else there, randomly now maybe someone will re use the same url for their image and it will show in my note?👀🤔

#asknostr Relays, clients, etc where are they being hosted? Aws, Google, etc?

As a user I understand the decentralized strategy through relays and divers clients options.

But as developers (which I am not) , where are they storing their app codes and where are the relays storing the data. For the most part, as I assuming most big relays and clients are not using home servers.

So if I want to deploy let's say a Haven relay, not from my home network, what cloud provider, would you recommend me?

Hope there is logic in my questio. If not I welcome wisdom.