Lucas Kell on Nostr: Yeah I figured that would be the case. Owning your own keys is fine and all but if ...
Yeah I figured that would be the case. Owning your own keys is fine and all but if widespread adoption is attained then there will always be breaches. With software doing the signing too you can't really keep it air gapped.
I wonder if a pimary/secondary key system could work, like you create a primary key on hardware then sign to associate a secondary key with a single identity. That way if the secondary key were compromised you sign a new one and unlink the old one.
Published at
2023-10-23 23:57:24Event JSON
{
"id": "c4fc98f85f3730b2226f641daad431b59065989d46d314de0b10c94bd60f9c33",
"pubkey": "98f2e6e3d5535803b968e241163a9eb3027ef13465a46d036719d46878c70878",
"created_at": 1698105444,
"kind": 1,
"tags": [
[
"e",
"b1431a9d0230c2b2d40cc8ae54f3387f703a9ce6c7afd8a55f36c01b3eef57d8",
"",
"root"
],
[
"e",
"cdd1f527566609e5007b24502ed335d72aa983fe860fdbaba146063c9eb9e0ae",
"",
"reply"
],
[
"p",
"98f2e6e3d5535803b968e241163a9eb3027ef13465a46d036719d46878c70878"
],
[
"p",
"0d97beae567fcec9c6574f1c6ef6126ea969d4992c3198e51c0fac52c5274a14"
]
],
"content": "Yeah I figured that would be the case. Owning your own keys is fine and all but if widespread adoption is attained then there will always be breaches. With software doing the signing too you can't really keep it air gapped.\n\nI wonder if a pimary/secondary key system could work, like you create a primary key on hardware then sign to associate a secondary key with a single identity. That way if the secondary key were compromised you sign a new one and unlink the old one. ",
"sig": "d420566c4a69726d416ad5f1b1d48b20c1c3a4058e7ac1dae78bff5228e386e9421733e6d8b2737e5c2cdef2a7b0095eacf264654cb7f4a1d367b0240ac3256b"
}