Nostr Compass Podcast #4
Primal Android becomes a signing hub with NIP-46 and NIP-55. Marmot hardens MLS after audit. Nostria 2.0 adds music and streaming.
This week we cover Primal Android's transformation into a signing hub with both NIP-46 remote signing and NIP-55 local signer support, letting other apps request signatures without touching private keys. The Marmot team addressed findings from a security audit with 18 merged PRs hardening their MLS-based encrypted messaging. Nostria 2.0 ships cross-platform with native music support, live streaming with Game API integration, and remote signer QR code connections. We also cover Nostrability's new relay hints tracker documenting client interoperability. Our NIP deep dive breaks down Nostr's encryption standards, explaining why NIP-04 has security flaws and how NIP-44 fixes them with ChaCha20-Poly1305 authenticated encryption.
00:00 - Intro to Episode 4 00:49 - Primal Android 2.6.18: NIP-46 remote signing and NIP-55 local signer support for other Android apps 10:18 - Marmot Protocol security hardening: 18 PRs addressing audit findings including hash verification and pagination fixes 13:53 - Nostrability relay hints tracker: documenting client support for hint construction and consumption 18:11 - Nostria 2.0: music streaming with zap payments, live video with Game API, profile discovery, and remote signer QR codes 26:34 - NIP Updates: NIP-55 return field fix, NIP-50 query expression extensions proposal 32:27 - NIP Deep Dive: NIP-04 vs NIP-44 encryption, from AES-CBC flaws to ChaCha20-Poly1305 authenticated encryption 41:56 - Releases: Citrine v1.0, Applesauce v5.0, Mostro v0.15.6, Aegis v0.3.5