jb55 on Nostr: password managers generate a unique password for each website. this means if one of ...
password managers generate a unique password for each website. this means if one of your passwords leaks it won't compromise any of your other website logins.
nostr-login is a regression: if you leak your nsec then they have access to every website that you've ever logged in to.
using your npub for logging into everything is a really bad idea security wise, please be conscious of this before implementing or pushing this as a login solution to websites which may contain sensitive information.
Published at
2024-07-05 15:53:11Event JSON
{
"id": "212702ad022b48985734091df754d09607997e2abece53003a88332bbe675d8c",
"pubkey": "32e1827635450ebb3c5a7d12c1f8e7b2b514439ac10a67eef3d9fd9c5c68e245",
"created_at": 1720194791,
"kind": 1,
"tags": [],
"content": "password managers generate a unique password for each website. this means if one of your passwords leaks it won't compromise any of your other website logins.\n\nnostr-login is a regression: if you leak your nsec then they have access to every website that you've ever logged in to.\n\nusing your npub for logging into everything is a really bad idea security wise, please be conscious of this before implementing or pushing this as a login solution to websites which may contain sensitive information.",
"sig": "d072752550e638f6b824d22e373b6ce6169bcea75443385dd156271efcf3664f138c00d3cddae962d3d7884a50a5e6f5565fd89d18bde7b9f75ad3742d9b0f21"
}