Not being able to quickly and safely sign into another client or device is such a friction with Nostr. I really think it’s the most important problem to solve in the short and medium term. And I do *not* think remote signing with another device or running nsecbunker or having your phone find some trick to stay alive in the background to be a signer is the solution. They are clever and useful for some, but ultimately only a tiny, tiny minority will deal with those things.
I’ve thought for years we just need a key signing delegation. It’s the equivalent of session cookies online. The problem simply requires a robust and decentralized way to sync and share active “session keys” that can be safely and quickly revoked when needed.
I’m also not saying that’s an easy problem either. I’m simply saying I don’t see anyway we get the “web experience” but also the security of signed messages and not needing to trust the host or relay without it. I’d love to hear other ideas for it though. I’m working on what I described above right now though.
I’ve thought for years we just need a key signing delegation. It’s the equivalent of session cookies online. The problem simply requires a robust and decentralized way to sync and share active “session keys” that can be safely and quickly revoked when needed.
I’m also not saying that’s an easy problem either. I’m simply saying I don’t see anyway we get the “web experience” but also the security of signed messages and not needing to trust the host or relay without it. I’d love to hear other ideas for it though. I’m working on what I described above right now though.
91❤️2