Thread

Replies (8)

Security should not be sacrificed so easily for convenince. This is how PGP died. The road to hell is paved with 'good UX'. I will not subject my desktop to a random slew of untrusted code, my graphene phone tho I will because it has proper security isolation. To be clear, my concern is not only with my nostr key, it's my userspace that I am more concerned with. For desktop, best I can do is use a signing extension for a browser (which I trust far more than someone's new app with thousands of dependencies and thousands of lines of un-audited code). And the shitcoiners proved the UX is not only possible, but easy, by onboarding an entire shitcoin ecosystem to browser extensions. Just nostr has not collectively developed one. Other than @The Fishcake🐢🐾 & 763 others . He's the only one that rolled up sleeves and did anything in this area in the last 2 years for browsers. Do I like browsers? Not really. Do I think an extension signer is easier to audit than multiple full blown apps that have low level user access? Yes.