Oddbean new post about | logout

Notes by brugeman | export

 Is it just me, or does the nostr.band 24 hour trending list never change? 
 It's not just you, it's the trending calculator got stuck. Fixed, thank you. 
 How do I login to npub.cash from my mobile? Can do it from my desktop through alby but don't know... 
 There is a guild on the nsec.app homepage. 
 How do I decrypt the keys exported from nsec.app? Who made nsec.app? #asknostr 
 Thanks for the link! 
 @hodlbod please take a look, needed this while working on nip44 for nsec.app https://github.com/coracle-social/coracle/pull/310 
 Does anyone use the nsec.app docker container ?
Should I keep maintaning it ? ⚡️ 
 Were you using it yourself for some project? 
 got my nsec.app encrypted key 

Won't work in primal 🤣🤣🤣

Waste of 10 mins 
 @miljan any plans for nip49 support for encrypted nsec import? 
 Does anyone know how I can get a single stat from nostr.band?
Example, how can I just get today... 
 There is no API for stats. 
Stats need a major upgrade to be usable by external clients, but that's not our focus atm. 
 Well. I'm back home. And i see now how usefull is to have nostr on cellphone. But i think it is n... 
 You can try nsec.app, it implements the same nip46 protocol that nsecbunker does, there is a list of supported apps on the homepage. 
 Hey guys, I’m a newcomer, can you share most “important” links or apps here in #nostr ecosy... 
 I encourage you to try the nsec.app, there is a list of supported apps and video guides on the homepage, let me know if you have any questions. 
 Hi! I agree that the flow you've described is super unfriendly. The 'Discover apps' link on nsec.app leads to a general nostr app catalog - those are all apps out there, not ones that support nip46 (the remote access protocol that nsec.app implements). Eventually we will have a much better supported-app-discovery flow, for now you can go to nsec.app homepage and check the list of supported apps at the bottom of it. And yes, you have to open the app and figure out how to login with nsec.app there - each app does it a little differently, again our homepage has short video guides for every supported app. Does that help? 
 Thank you for the critical feedback, you've given me some ideas I haven't considered before! 
 My running theory that the Nostr sign-in flow should feel like an IKEA effect. The user should fe... 
 Could you please try keeping the nsec.app tab open while signing in, would it work that way? Also which OS and browser?  
 Hmm sorry to hear, will be looking for issues in this area, thanks! 
 @Egge npub.cash is down? 
 I had to clear site data to get it working, was only showing Loading...

Is the frontend open-source? Wanted to submit a PR to nip46 part but couldn't find it 
 Where did that note get 2k likes? Which platform? 
 I'm getting tired of being paranoid about the CIA controlling everything. #thenostr 
 It's so nice to have you guys around 
 If people only used auth_url popups to confirm then your bot wouldn't do harm. Doing confirms through popups has other useful features. I wonder if I should implement the 'secret' thing and only show connection requests with a secret in the nsec.app itself. 
 Yeah requiring secret seems like a good path forward for non-oauth-like flows. 

I will send some PRs to clients to add support for it.

That bot will inevitably be made bcs it's quite trivial, so thank you for raising the issue sooner. 
 500k zap will go here
nostr:nevent1qqs8l5mm3scg65uvh0uh8jmp6a0sksmv86kuy774vau5qx7086s76lspp4mhxue69uhkummn9ekx7mqzyqduwzspfzelx9k6x0lrez0j8cl8rtz0lxvqylk8z2ustnfy76jpzqcyqqqqqqg0qt5ql 
 How to login to Nostr Nests with nsec.app :

(More compatible apps on nsec.app homepage)

https://v.nostr.build/nWrPa.mp4 
 @Skipper nip46 coming to zap.stream? 
 @Kieran nip46 coming to zap.stream? 
 Great question! Some app messed up with it! 
 Yeah that the full nip46 implementation - app makes a call to signer, signer sends back auth_url message if confirmation is needed, app should show a popup with that url, when user confirms signer replies to the request and the app receives the reply to the method they called. For apps that don't implement auth_url you can manually go back to the signer to confirm. It's all in the nip46. 
 @hzrd149 nostrudel trying to sign DM with 'null' in tags: {\"kind\":4,\"content\":\"vckekw0ADZhsRYcA/5Iv90sZw7rcvBySa2u6NG7FwbontwKcLKOrYGB5uTLPLqkMKImQqDiDHCLOl6E3YltJj3h5CTPmGC3y2e/pXhZgmID5Pdl4omf/hbcHaCuYG5N15NXLO7Wtg3yrQsefg5Xd9bMT5ZA6FwGzkvGLhCjKTn8Iz2IAwpqb2p6zbSCB166WGtEIM5rBVPTFfSTQMDtvxg==?iv=bxUEv6Zu4kVK7sNfAoaKWA==\",\"tags\":[[\"p\",\"5144fe88ff4253c6408ee89ce7fae6f501d84599bc5bd14014d08e489587d5af\",null]],\"created_at\":1710307709,\"pubkey\":\"3356de61b39647931ce8b2140b2bab837e0810c0ef515bbe92de0248040b8bdd\"}"] 
 Nsec.app will be asking this for nip42 events so just encourage people to use remote signing and problem solved  
 Why is remote signing a bad idea? 
 Nsec.app stores keys in your device, it's running inside browser service worker which is weken up by a push message if server detects that sw is sleeping and not replying  
 Getting eth spam calling themselves SwanBitcoin News. Cc @Swan
https://i.nostr.build/BR790.jpg 
 Good idea 
 Dune 2 is the best movie going experience I’ve had in a long long time. 
 I absolutely loved dune 1, can't wait for the second part  
 who are the native russian speakers here? 
 Yes  
 test 😃  
 Yay! 
 yo, the cow testing #nostrudel and #nsec.app... blowing my mind  
 the beginning of infinity 
 How to login on npub.cash with nsec.app:

(I'm recording a series of short guides on apps supporting nip46, links on nsec.app homepage)

https://v.nostr.build/oMWZx.mp4

 
 Cool! Let us know how it goes! 
 No, it's a protocol, how apps can talk to your keys. 
 It involves generation of session keys by the app, and use of those temporary keys to talk to the signer (nsec.app) over some relay.

Bunker url is just a pointer to your npub and a relay over which app can talk to signer. But bunker url can also contain secret that has pre-approved permissions attached to it by the signer. Nsec.app doesn't support that atm. 
 Thanks for using it and for the feedback! 
 Help. What the hell can I use to see nsec.app working??? I tried to put it's connection string in... 
 There is a list of apps at the bottom of nsec.app homepage. Several bigger ones are in the pipeline with bug fixes. Shipyard only works with nsecbunker, it's not yet fully implementing the nip46. 
 @Alby hey there is a broken Discord link at the bottom of nwc.dev 
 Awesome! 
 So what is the advantage of using nsec.app over a regular password manager?

#nsec #nostr 
 Password manager can only store your nsec safely. Nsec.app can give permissioned access to other apps to your keys, and you can put nsec.app's password to your password manager to make life simpler. 
 I think comparing nsec.app with password manager is apples to oranges. 
 Web apps can be PWAs - I have nostrudel installed, works with nsec.app pretty well.  
 None that I'm aware of. But those are next on my nip46-advocacy todo list, we'll see how it goes. 
 We also don’t have any fun interactive knowledge bases in any client as far as I’m aware. Thi... 
 I would zap my pants off if you sketched one for nsec.app 
 Which nostr browser client is the best?

Must be compatible with nsec.app 
 Snort, Nostrudel and Coracle support nip46 (or at least will be with the next releases), for now there might be various issues here and there. 
 Try typing your name@nsec.app to Snort login screen, might work. Several issue fixes were submitted to Snort last week, hopefully will work better when released. 
 That one is broken in current version, fix coming  
 Is there a browser #nostr extension allowing for multiple nsec management? 
 You can have multiple accounts in Alby and can switch btw them, but you'll have to also switch in each nostr-app - most of them have their own 'logged in user' state, so just switching in alby won't be enough. My solution is to have several accounts in nsec.app and use different nostr apps with different accounts.  
 Use an nsec bunker like nsec.app 
 Bunker urls currently generated by nsec.app aren't sensitive. But there are different kinds of bunker urls, some of which are sensitive, so I'd say you shouldn't get used to treating them lightly. 
 I would encourage you to use your name@nsec.app to login where possible. If we ever start generating bunker urls that must be kept secret we will have big warning all over the place. 

We currently export keys in ncryptsec format, not many apps support it yet (Amethyst does). Importing ncryptsec is on the roadmap.  
 Yes I think so  
 Multiple devices, multiple OS's, on home network (dumb), or VPN

nsec does not work for me. Who c... 
 Which app did you try it with?  
 Could you please try again on next.nostrudel.ninja? It is a coming-soon version of nostrudel where several bugs have been fixed, try the 'Nostr Address' option to login with your name@nsec.app 
 Idk how but nsec.app has never worked for me. 

I have enabled notifications on desktop, with ext... 
 Which app did you try nsec.app with? 
 Thanks, that would be awesome! 
 I agree in theory, in practice no native app devs have shown enthusiasm. Native apps are proud of their low latency, nip46 can never get that performant and predictable. Batching solves dm decryption, and signer-relay saves one round trip, but one rt stays no matter what. Unless it's some nip46-over-ipc on the same device. 
 It does 
 Is there a list of apps that support nip 46 nostr remote signing / nsecbunker somewhere? 
 I'm populating the list of supporting apps on nsec.app homepage at the bottom, with short video guides. 
 Nostr-login deployed to nostr.band and nostrapp.link

If you wanted to experience the new OAuth-like login flows getting adopted on Nostr, go check it out. Make sure to turn off your key-storing browser extension and reload the sites beforehand. Even better - try on mobile. Login button will show a cute modal that will guide you forward. 

https://image.nostr.build/444d9dff0a7335ae79ede67682c5020ff8a8da7e4d8420c7bc4391f635f9d466.jpg
https://image.nostr.build/eadfc3a1a7c4a351e7fa34e052a6ce01ad9b1b5ec66cb6f9631c70a52614cc5c.jpg  
 No, popups are blocked by browsers in various circumstances, we try to avoid that where possible but maybe we're missing something. Will look into that, thank you!