Damus
nostrich · 1w
What are the privacy assumptions when using Amber?
greenart7c3 profile picture
By default it checks for updates every day, you can disable that in settings
By default it tries to get your profile from some default relays, you can change the relays or remove all of them for disabling this
Bunker requests (usually used for web apps) have some default relays, you can change it in the settings
Bunker requests in the last few updates generates a new key for each app.
The offline version can't connect to the internet, not even localhost since it also needs network permission
In all cases clients know who you are and most nostr requests can leak information about who you are and what are you doing
For bunker requests I recommend using a local relay like citrine for a faster experience but not all clients accepts connections to local relays
nostrich · 1w
Interesting. I can store more than one Nostr identity in Amber. This means profiles then become linkable. They ping the same relays at the same time? I feel this needs more afterthought and sane defaults as it is quite complicated for noobs that mohtveasily doxx their anonymous IDs.