Thread

Replies (12)

🛡️
Better depends on who’s asking. They have you use an nsecbunker like service on your PDS and then it is accessible via login & oauth and all the signing happens on your PDS server. If you want, you can migrate your keys to another PDS server. Users are not encouraged to backup their keys and there’s no way to do it without coding up something yourself. The vast majority of bluesky users don’t know they have keys to them it’s just username and password like they know.
I agree with onboarding needs to be simpler, but UX/UI is still quite bad and there are plenty of ideas how to improve it. The one thing where i disagree is to skip learning about nostr keypairs and key management. Whether bitcoin or nostr or peer to peer. The future is keypairs and everyone who is not ready for it already has a social network they can use - be it facebook or mastodon. At some point in evolution, people have to make the switch to keypairs and learn the basics - they also managed to learn domain names and email addresses back in the days. This is imho absolutely critical to change the way to think about the internet and having users back in control over their digital lifes
The npub & nsec requirements for users to login is a tremendous barrier at the moment. It looks like nonsense to your average human. I am okay with securely storing my nsec in a database of a company I trust, but most are not. I understand why. If we enable burner keys it makes both worlds happy. You are not sharing your parent nsec, but using a child that signs on behalf of it.