Oddbean new post about | logout
 How are the names of the WoT people selected? People I follow who have also used zapstore to download? 
 Fran is “logged in” with his npub. ZS then checks his follows list against who follows app X npub. There is some WOT score. ZS surfaces people at the top of the list with the highest WOT score. 
 so it’s based on people following an npub of an account associated with the download? does it require the binary is signed by the corresponding nsec?

would be nice if there were a stronger endorsement scheme representing something like “i’ve downloaded and endorse this binary” 
 Just to clarify, my demo is very PoC. The longer term vision for zap.store is all devs signing binaries with their own keys.

Fully agree with stronger endorsements. We currently base WoT on contact lists because it's the best we've got - but actively thinking and experimenting with ways of expressing stronger signal 
 #induecourse @dk 
 love it!

is zap.store signing a kind of interim step to establish trust until developers are setup to sign their own binaries?
https://m.primal.net/IZsd.png 
 💯 
 even nicer to see avatars. not available in the CLI PoC
https://m.primal.net/IZsj.jpg 
 Wait until you can see, and have the option to choose from @Gigi ‘s curated list 
 @Max check it

we’ve talked Web-of-trust before, but never seen a PoC in the wild

this is a revolution 
 Yes! 100%

Here's a note explaining further

nostr:nevent1qvzqqqqqqypzq7xwd748yfjrsu5yuerm56fcn9tntmyv04w95etn0e23xrczvvraqywhwumn8ghj7mn0wd68ytnzd96xxmmfdejhytnnda3kjctv9uq3qamnwvaz7tmwdaehgu3wd4hk6tcqyqt0txzc09542ant75ydt4r9xznh37jmer0ddlfapl8lnak7cwt45q6z6e0