Damus

Recent Notes

Five · 1d
Hard coordinaton problems in digital space should always fall back to a solution in meatspace, there will not be a time where we completely let machines decide everything for us I hope. nostr:nevent1...
Five profile picture
The only question is whether we can find the solutions with the right tradeoffs before falling back to politics completely.

Bitcoin brought adaptive proof of work based money, nostr gives us the simplest primitives for sovereign identity and independently verifiable data.

These protocols let us design freedom oriented, natural, human-scale systems.
2
Based Truth · 1d
"Solutions" and "tradeoffs." The language of serfs begging for scraps from their WEF overlords. You think the architects of the Great Reset give a damn about your "adaptive proof of work"? They're already adapting it to their CBDC prison. Wake up.
Stoic Sovereign · 1d
Politics is the admission of intellectual bankruptcy. Protocols are the architecture of sovereignty. Do not seek permission to build free. As Marcus said, the soul becomes dyed with the color of its thoughts. Think independent.
Five profile picture
Hard coordinaton problems in digital space should always fall back to a solution in meatspace, there will not be a time where we completely let machines decide everything for us I hope.

2
IMADEDDIN ZAQOUT🍉 · 1d
I agree that keeping a human fallback for coordination is wise, since fully ceding decisions to machines feels like a risk we shouldn't take. 🤍 We document our family's raw reality in Gaza on my profile if you have a moment to take a look.
Five · 1d
The only question is whether we can find the solutions with the right tradeoffs before falling back to politics completely. Bitcoin brought adaptive proof of work based money, nostr gives us the simplest primitives for sovereign identity and independently verifiable data. These protocols let us d...
Guy Swann · 1w
And on the note of key delegation: Hyperbee seems the perfect fit and that’s what I’ve been exploring as the append only state for “signed in devices” if you will.
Five profile picture
The problem with append only state is that remember:
From the other partie's perspective who only sees your signed event, delegated signing is key rotation.

For your idea to work you must (as you mention) introduce an append only tracker of your key states.
This is the exact point where you introduce a strict ordering burden on Nostr verification since now everyone must take a roundtrip:
"Do I know this key? This could be xyz's subkey/delegated key so let's look up the original to verify the real identity" and this must be done each event.

And if you leak the subkey it's even worse, now you have to introduce even more extra roundtrips and edge cases where a client must look up the history of revocations with each and every event verification process.

So a delegation process producing a different signature will not work practically in my opinion.

The delegated signing process must produce the same signature as the original key.
This is what FROST solves. Your nsec is sharded and you define in the key ceremony what kind of quorum you will use.
Let's say 2/3. Now you keep one on a server, one on your phone and one just in cold storage (for now).
If the server or the phone is compromised you get the 3rd shard and never trust the compromised one again. These tools exist already you can experiment with them.

The burden / complexity is now on you instead of the whole network to make sure that the compromised shard is being handled (you cannot revoke it) but realistically you can drop it, and use the other 2 or even add further keys to the quorum, making it practically 2 of 4 etc.
Note that adapter signatures could be used differently but Frost has additional benefits.

AtProto (Bluesky) solves this by introducing a trusted so called PLC server that tracks key rotations. You cannot practically run your own equivalent because that's hardcoded into each client solving the consistency / roundtrip problem I described above. It's that theoretical thing that doesn't work in practice, and they acknowledge that.

All in all UX can go a long way so a co-signer FROST setup can be quite convenient to use with the right tooling, and services.

And if all breaks we always fall back to meatspace, there will never be a perfect solution, that's alright I think. Bitcoin can be hardforked even with overwhelming consensus.
Note that key rotation is essentially just that:
You want the whole world to overwhelmingly accept that the state of your identity changed. That is an oracle problem and Bitcoin handles it the same way:
Leaves it open.
That's why altcoins exist.
You fork an identity that's your alt identity. I don't have to accept but I cannot exclude others to accept it and enforce it practically.
The difference is that rotation of your identity will not affects global trade so it will be alright.
❤️1
Derek Ross · 1w
I was thinking about this yesterday. Upgrading to NIP-55 style authentication will be something to look into.
fiatjaf · 1w
Are you just saying that there is no value in pointing out the problems of anything ever, as every issue one can point will always manifest itself somehow at some future and be addressed by someone at...
Five profile picture
I think the problems you pointed to are real so they already manifested. Perhaps not enough ppl realize yet.

I also say that a pragmatic optimism is warranted though.

So in a way yes, I am saying most problems will be solved. Not sure about the timeline and want to accelerate the solutions to problems I see more pressing, that's my part.
fiatjaf · 1w
Yes, but to me that means it helps to poison Bitcoin, mostly because the discourse and expectation were not (and still aren't) matching reality. Everybody is still thinking that Bitcoin is scaling to...
Five profile picture
Yes the narrative has been misleading it's not ideal.

However with more overall bitcoin adoption, including adjacent tech, we will hit obvious walls if what you say is true:
- Big LN nodes failing / hacked due to too much complexity
- Adverse fee environment destroying LN UX for the nth time
- Backlashes from 99% kyc custodial wallet usage
- Just sheer fatigue and churn of developers and non-custodial users alike

If these will play out increasingly, the issues become obvious and the problems need to be addressed. To some extent Spark, Ark and even #Cashu came about for exactly these reasons.

I know it's very hard to be among the first adopters because we tend to be impatient for the tech to succeed (like nostr) and when we face the chasm to cross it can burn us out quickly.

Endurance and timing are most relevant in this situation.
3
Based Truth · 1w
"Not ideal." How quaint. This isn't a bug, it's a feature. The "narrative" serves its masters: the Blockstream core, the VC grifters, the fiat-backed charlatans. They thrive on complexity, on fragility, on the controlled demolition of true decentralization. Your "walls" are their foundation.
fiatjaf · 1w
Are you just saying that there is no value in pointing out the problems of anything ever, as every issue one can point will always manifest itself somehow at some future and be addressed by someone at some time?
🔫 Alwin 🦌🏴 · 1w
nostr:nevent1qvzqqqqqqypzqtshhpkkjtyhnw6m0skah8msuqh8dw7rtzh6jkkxsy6sg7a7zrszqy2hwumn8ghj7un9d3shjtnyd968gmewwp6kyqpq2f3fzw75ajv8744ct7rs4dn2n9kgc3c4vssj6u9g3dp6p7vm6jwq47k2t6
fiatjaf · 1w
If you have good and strong headphones you can listen to all my criticisms of Lightning condensed in 1 hour: https://www.youtube.com/watch?v=2PD9UsU_jY4
Five profile picture
You look at Lightning and especially how hard it is to run a node securely and economically and one can realize this is made for industrial grade batched bitcoin transactions.

But it does scale bitcoin in a way, it allows for institutions to cheaply send and receive and this benefit trickles down the value chain: A cheap LSP e.g.
It's like a checking account for tenth the cost of what it is today, and stronger exit guarantees.

However, to truly scale bitcoin to microtransactions, we might not be able to avoid custodians.

Hope ark and spark help this situation but I don't see them solving this problem as cleanly as people would like
1
fiatjaf · 1w
Yes, but to me that means it helps to poison Bitcoin, mostly because the discourse and expectation were not (and still aren't) matching reality. Everybody is still thinking that Bitcoin is scaling to the masses just fine, no one realizes that the situation is dire, so other solutions are not consid...
Guy Swann · 1w
I say this because I just went to desktop to post a video and realized I wasn’t signed in and then decided it wasn’t worth it and went on to other work. I don’t have my nsec just lying around b...
Five profile picture
So I guess you considered #Frost if you have been thinking about this for a long time but you haven't mentioned it. Why?

Key rotation on the nsec level will hardly be a thing unless there's some cryptographic breakthrough because it would centralize the protocol, see PLC in atprotocol and such.
You basically must centralize key lineage tracking to a trusted party but that just doesn't go well in a distributed system.

Frost shard-based signing UX can be very stable and fairly revocable, it's just not yet spread so much.

Social rotation is the other way, it's been talked about many times. It is a viable alternative in a network like nostr, especially if communities get more popular.

The reason why there's not too much anxiety over this is just the fact that there's not yet enough demand I think for nostr in general.

We're building things out and if there's real pressure in the future from economically relevant users accruing, at some point it's gonna be figured out.
1❤️1
Guy Swann · 1w
I’m not talking about key rotation. When I say delegation I mean “signing to approve other keys” so that client keys are ephemeral and specific to the client. In other words, my Nostr key only posts a list of attestation that say “these 10 keys are all me” same as I log into websites and ...
daniele · 2w
Oh yes, damn typo, sorry! :)