fiatjaf
· 2d
Why haven't you invited your friends and family to Nostr?
I'm not saying you should do that at all, just curious about the reasons. Especially if you think there is possibly anything that we could do...
I did. Yet I'm not sure where it will go yet.

It's mostly about the synergy of signers + DMs mess, which I believe is as close to resolution as ever.
There's definitely a tension in the beginning: NIP-17 reliability is not just some meme. Clients are either buggy or/and propose wrong relays by default—this destroys UX in the beginning:
Two of my close contacts either ran into exactly this issue or something similar. We don't see these bugs because we know what we do, and we don't normally use such crappy hardware as the cheap Samsung phones (with their custom firmware that always lags from the upstream Android).
The problem with singers: bunker:// URI works great, but it's inconvenient to use for somebody who wants to connect from desktop to Amber. nostrconnect:// supposed to fix it, but it appears that clients propose some other relays the user didn't choose; these could be dead/slow/unavailable relays from their location.
I ended up writing another starter guide/tool due to all this frustration:
https://codonaft.com/nostr-no-bullshit.html
> anything that we could do in order for you to do that
Mostly optimize for reliability:
1. Test apps on the crappiest of the popular devices.
2. Require clients to allow custom relays to be set in nostrconnect://
3. Implement semi-automatic migration of dead relays to new ones everywhere: in ordinary clients and in the signers:
4. Get rid of raw nsec/ncryptsec input lines in the ordinary clients entirely—these are overabused, specifically when something fails with NIP-46.
Every time somebody pastes their nsec in another slopware, I no longer trust them: I don't consider the DMs to be actually private.
Some NIP could already directly state: "nsec SHOULD never be used directly in clients; NIP-46 and NIP-07 SHOULD be used instead". It's like the actual example of why we SHOULD use uppercase SHOULD sometimes—to show how stupid we were by allowing it to do otherwise.

It's mostly about the synergy of signers + DMs mess, which I believe is as close to resolution as ever.
There's definitely a tension in the beginning: NIP-17 reliability is not just some meme. Clients are either buggy or/and propose wrong relays by default—this destroys UX in the beginning:
Two of my close contacts either ran into exactly this issue or something similar. We don't see these bugs because we know what we do, and we don't normally use such crappy hardware as the cheap Samsung phones (with their custom firmware that always lags from the upstream Android).
The problem with singers: bunker:// URI works great, but it's inconvenient to use for somebody who wants to connect from desktop to Amber. nostrconnect:// supposed to fix it, but it appears that clients propose some other relays the user didn't choose; these could be dead/slow/unavailable relays from their location.
I ended up writing another starter guide/tool due to all this frustration:
https://codonaft.com/nostr-no-bullshit.html
> anything that we could do in order for you to do that
Mostly optimize for reliability:
1. Test apps on the crappiest of the popular devices.
2. Require clients to allow custom relays to be set in nostrconnect://
3. Implement semi-automatic migration of dead relays to new ones everywhere: in ordinary clients and in the signers:
4. Get rid of raw nsec/ncryptsec input lines in the ordinary clients entirely—these are overabused, specifically when something fails with NIP-46.
Every time somebody pastes their nsec in another slopware, I no longer trust them: I don't consider the DMs to be actually private.
Some NIP could already directly state: "nsec SHOULD never be used directly in clients; NIP-46 and NIP-07 SHOULD be used instead". It's like the actual example of why we SHOULD use uppercase SHOULD sometimes—to show how stupid we were by allowing it to do otherwise.
https://blossom.ditto.pub/4f18c2dd10167c6d7b409c220aedfcc595b1ef2f55db7a0d59e757610806f1ff.webp https://blossom.ditto.pub/2c615f16d4726a7137355ccbdd253b74303a62c9fd6f139d23a9a17c19fbfcac.webp Armada Android app connected over Amber using "Log in with Amber" or "Open signer app" Show more
wss://relay.damus.io appears to be still dead and alive at the same time. I think that manual maintenance of relay lists could be improved with some automation: a relay admin could sign and broadcast a notice that their relay domain (or IP, if the certificate is issued for IP) i Show more
Johnny @thejohnnycrypto
· 1w
Replying to @codonaft
nostr:nprofile1qqswls4kuk2gpu89tny8c6d0q6mdrggl5f0ya226gwv833qhn8zncxggjjys9 a red warning would help, and the stronger version is refusing the paste outright when the string starts with nsec1. i would rather a client tell me no than tell me i probably should not.
31