Leo Wandersleb on Nostr: The problem is it's a multi step process and not very private where it could just ask ...
The problem is it's a multi step process and not very private where it could just ask my nip07 to sign a message.
As it is, I can trivially get a list of all login events of all nostr users without much gain.
It is better than asking for the private key though.
Published at
2023-11-01 00:25:36Event JSON
{
"id": "ee5fe0e6537e4538ef530c23a7c1a96114f4850c8a900990fb1a7a44cb71334f",
"pubkey": "46fcbe3065eaf1ae7811465924e48923363ff3f526bd6f73d7c184b16bd8ce4d",
"created_at": 1698798336,
"kind": 1,
"tags": [
[
"e",
"83650d2b1d9fd660fb1d9475f761640567acae86cdb1bd07544d09727de54826",
"",
"root"
],
[
"e",
"fe75bd658449f89013798ffc364e6e82b46233d10a8790065ebed58a240ea5dc",
"wss://nos.lol/",
"reply"
],
[
"p",
"9cb3545c36940d9a2ef86d50d5c7a8fab90310cc898c4344bcfc4c822ff47bca"
],
[
"p",
"3bf0c63fcb93463407af97a5e5ee64fa883d107ef9e558472c4eb9aaaefa459d"
]
],
"content": "The problem is it's a multi step process and not very private where it could just ask my nip07 to sign a message.\n\nAs it is, I can trivially get a list of all login events of all nostr users without much gain.\n\nIt is better than asking for the private key though.",
"sig": "23f880cd5233f0b6d3cac952698af2cab6e764100145432733337707dc1f08d69b0e4c61fe5c58a6a4cf4a9172b573811567c4dd33968548d5cc3cea3233392a"
}