Damus
BigMilan · 2w
Oh wow. I didn’t think of it that way. Wtf are we supposed to do now? 😅 most of us have typed the nsec into several apps 😮‍💨
Josh profile picture
Honest answer, you can’t un-expose it. But you can stop the bleeding. Move your nsec into a signer so no new app ever sees it again, then delete it from everywhere else. Odds are nobody grabbed it, the risk is what happens as the network grows.
And if your identity really matters to you, the clean move is starting a fresh key that’s never touched software at all. Way cheaper/less hassle to do now than in 5 years. The KEY does either, restore your existing nsec or generate a new one on the device.
2❤️1
digga 🇩🇪 · 2w
Nostr should introduce a way to change your key and completely migrate your account to this new key. Additionally key rotation should be implemented. These 2 things would radically improve safety even if a key has been exposed.
BigMilan · 2w
OK well, I’ve put my email into the “notify me” field on your website 🫡 When can we expect it?