In this case failure = success, markdown should not be supported in kind 1's
Wow, is atob faster because it's native code? Why did they roll their own?
What did you do? I have an open PR to Alby to cache shared key generation, which helps a lot, but it sounds like you might have more going on.
Finally catching up with nostr:npub1nstrcu63lzpjkz94djajuz2evrgu2psd66cwgc0gz0c0qazezx0q9urg5l talks
watching nostr:npub1jlrs53pkdfjnts29kveljul2sm0actt6n8dxrrzqcersttvcuv3qdjynqn 's
very good talk so far; very clear thinking -- thank you, hodlbod 💜
You're welcome
Kiwi browser lets you install extensions. I've had more success with flamingo on mobile though.
nostr:nprofile1qqsrxra3gv0lnkxz2pcxh0xuq9k4f9dr7azwq3aypqtnay4w0mjzmtqpzamhxue69uhhyetvv9ujuurjd9kkzmpwdejhgtcprpmhxue69uhhyetvv9ujucm4wfex2mn59en8j6f0qyghwumn8ghj7mn0wd68ytnhd9hx2tce33z4j I was just talking to nostr:nprofile1qqs04xzt6ldm9qhs0ctw0t58kf4z57umjzmjg6jywu0seadwtqqc75spzamhxue69uhhyetvv9ujumn0wd68ytnzv9hxgtcpz4mhxue69uhhyetvv9ujuerpd46hxtnfduhszyrhwden5te0wdhkcmmrduhxump0c6w75y about the OAuth stuff. You had mentioned a vulnerability where an impostor client could hijack another client's session by authenticating with the same client id. I looked briefly at OpenID Connect's dynamic discovery mechanism, and it looks like you get a shared secret at registration. We have keys though, do you think it would make sense to have a client sign an authentication request using the same key they used to publish a NIP 89 app listing?
Or, would it make sense to just re-authenticate every time you wanted to log in, without identifying the client? Pablo proposed this and I don't see any need for a client to self-identify or maintain a persistent session with the authentication provider, other than a bunker key.
nostr:nprofile1qqsrxra3gv0lnkxz2pcxh0xuq9k4f9dr7azwq3aypqtnay4w0mjzmtqpzamhxue69uhhyetvv9ujuurjd9kkzmpwdejhgtcprpmhxue69uhhyetvv9ujucm4wfex2mn59en8j6f0qyghwumn8ghj7mn0wd68ytnhd9hx2tce33z4j I was just talking to nostr:nprofile1qqs04xzt6ldm9qhs0ctw0t58kf4z57umjzmjg6jywu0seadwtqqc75spzamhxue69uhhyetvv9ujumn0wd68ytnzv9hxgtcpz4mhxue69uhhyetvv9ujuerpd46hxtnfduhszyrhwden5te0wdhkcmmrduhxump0c6w75y about the OAuth stuff. You had mentioned a vulnerability where an impostor client could hijack another client's session by authenticating with the same client id. I looked briefly at OpenID Connect's dynamic discovery mechanism, and it looks like you get a shared secret at registration. We have keys though, do you think it would make sense to have a client sign an authentication request using the same key they used to publish a NIP 89 app listing?
Let's start a clan I'm at the mossys in the wildy
Woww incredible shots. I have a film camera but have never really learned how to use it. Motivated to pick it back up now!
I'm going to interview nostr:nprofile1qqswuyd9ml6qcxd92h6pleptfrcqucvvjy39vg4wx7mv9wm8kakyujgpremhxue69uhkummnw3ez6ur4vgh8wetvd3hhyer9wghxuet59uq37amnwvaz7tmwdaehgu3dwfjkccte9ehx76m0w3shymewvdhk6tcpzamhxue69uhhyetvv9ujumn0wd68ytnzv9hxgtcva6z8k on nostr:nprofile1qqsdluwc0qu62t3el7nxl93387gmppe56jkvm88vcuwh3lpw4fcevwspzdmhxue69uhhqatjwpkx2urpvuhx2ue0qy2hwumn8ghj7un9d3shjtnyv9kh2uewd9hj7qghwaehxw309aex2mrp0yhxummnw3ezucnpdejz7myg2s8 here in a few minutes, anything in particular I should ask him about?
Ok, you got me, memories exist metaphysically, but not corporeally
1. I don't know anything about mining pools
2. I don't see why not
3. I don't see why you would
YES!!!
Two of the people I admire the most, riffing together.
Just made my day
nostr:npub1jlrs53pkdfjnts29kveljul2sm0actt6n8dxrrzqcersttvcuv3qdjynqn nostr:npub1gcxzte5zlkncx26j68ez60fzkvtkm9e0vrwdcvsjakxf9mu9qewqlfnj5z
nostr:nprofile1qqs04xzt6ldm9qhs0ctw0t58kf4z57umjzmjg6jywu0seadwtqqc75spzamhxue69uhhyetvv9ujumn0wd68ytnzv9hxgtcpz4mhxue69uhhyetvv9ujuerpd46hxtnfduhszyrhwden5te0wdhkcmmrduhxump0c6w75y beat us to announcing the latest episode of nostr:nprofile1qqsdluwc0qu62t3el7nxl93387gmppe56jkvm88vcuwh3lpw4fcevwspzdmhxue69uhhqatjwpkx2urpvuhx2ue0qy2hwumn8ghj7un9d3shjtnyv9kh2uewd9hj7qghwaehxw309aex2mrp0yhxummnw3ezucnpdejz7myg2s8 , check it out below or at https://fountain.fm/show/vnmoRQQ50siLFRE8k061
Yeah, I still need to add support
Ok, so maybe "dispatch" or "auto-selection" would be better.
I just saw a note that describes what I mean about blastr perfectly:
Gossip is a terrible misnomer. Inbox/outbox model is almost as bad. A better name would be the "routing model"
Added that to coracle recently, it's definitely helpful. What's the status of gossip in Damus?
Manually or automatically?
I don't know, a limit of >100 seems ok to me, it really does drain your battery on mobile
How's Damus holding up without gossip? Is it able to find notes now that they don't exist on the central hub? Or is this fake news. Good move by the way, this is a great stress test of the network architecture.
Very true, relay proxies or some other server-side commodity solution is needed to straighten this out.
I implemented gossip in Coracle 6 or 7 months ago. Meanwhile some of the biggest clients are relying on their relay's centrality plus blastr to not implement arguably the most important part of the protocol.
LORD, HIGH AND HOLY, MEEK AND LOWLY,
Thou hast brought me to the valley of vision,
where I live in the depths but see thee in the heights;
hemmed in by mountains of sin I behold thy glory.
Let me learn by paradox
that the way down is the way up,
that to be low is to be high,
that the broken heart is the healed heart,
that the contrite spirit is the rejoicing spirit,
that the repenting soul is the victorious soul,
that to have nothing is to possess all,
that to bear the cross is to wear the crown,
that to give is to receive,
that the valley is the place of vision.
Lord, in the daytime stars can be seen from deepest wells,
and the deeper the wells the brighter thy stars shine;
Let me find thy light in my darkness,
thy life in my death,
thy joy in my sorrow,
thy grace in my sin,
thy riches in my poverty
thy glory in my valley.
https://vmars.us/reads/the-valley-of-vision-A-book-of-Puritan-prayers.pdf


