Oddbean new post about | logout
 something like that. I don't think the B->C needs to be over Nostr, but that is a plus.  
 Kinda just reminds me of "DIDs" where you can prove that you are a "man" using zero knowledge proofs and third party signed proofs.

So I could have 100 badges publicly known and issued and you can prove to anyone that you have that badge but you can selectively choose who to share it with.

Another thought is something I saw a glimpse of when private chats were being discussed, what if you can prove that you wrote a message in a group, but if someone were to attempt to re-share this, there is no signature to verify it. I don't know how that would work, I just saw something a long time ago that makes me think it should be possible. 
 Does the first part have to be on nostr? It's a single recipient, same as the second.