Constant's avatar
Constant 5 days ago
risk is odds x severity; my point is that on 1 and 3 you make this reduce risk on 1, and add severity on 3 trade-off. But that in itself does not change that everything still rests on some key that can gets compromized, which is "catastrophic" regardless and my point in the first place. The point is that if i fully run your system, and someone steals a main-key, there is this automated infrastructure that inmediately diverts the audience towards wherever the attacker wants them. Yes i am aware that you can run the scheme without necessarily employing the proxy-logic, which is a scenario i explicitly described

Replies (1)

I don't agree that Inkan automatically adds to the severity of a total loss of identity. "[if] someone steal a main-key, there is this automated infrastructure that immediately diverts the audience towards wherever the attacker wants them" That's precisely the same with normal Nostr keys. If someone steals your normal Nostr key, they can divert the attention of your entire audience to their own posts and other activity under the guise of your compromised identity. Same with a compromised Inkan master key. The remedial steps you can take after such a loss are the same for Inkan and normal Nostr. I don't think that there's additional severity that Inkan adds as compared to normal Nostr. I think that the severity of a total loss depends on how much you had invested in that identity. E.g. if you make an Inkan "toy identity" on the Inkan home page, you can play around with it without investing any serious effort in it and then throw it away. It's a fully functional Inkan identity, but you wouldn't feel the loss of the master key because you haven't put much effort into it. I should also point out that Inkan gives "normies" a feature that's to some extent analogous to a crucial functionality they are used to from legacy "platforms": the ability to reset their password.