Awesome work mate. I like your API structure.
I am designing a set of endpoints that constitute a protocol so users can switch providers. Think blossom but for web of trust.
Did you consider signing the responses? Pros are the fact that responses become auditable and providers are not above the web of trust but inside it.
Wdyt?
Login to reply
Replies (2)
For certain endpoints it might make sense like getting counts of followers and so on, but for most of the endpoints like just getting a feed, it's just dumping other's signed notes so not sure it fits there. Whatever you come up with I'll have a look ๐
They're waking up to auditability, but what about the providers' true intentions, who's really behind the protocol?