Pomade is getting closer — take a look below for a demo video, or try it out yourself at https://pomade.onrender.com. For more details, take a look at the repository at https://github.com/coracle-social/pomade. I am currently looking for security-oriented reviews, so if you're interested in using this project for your client, please take a look at PROTOCOL.md and tell me if you see any major attack vectors! Of course, an email-based recovery protocol can only be so secure (email providers, senders, clients, and signers are all assumed to be somewhat trustworthy). If you really want to go deep, a review of the signer code would also be helpful. Finally, if you'd like to run a signer please let me know and I'll add your signer to my master list of recommended signers.

Replies (18)

Heading out to touch grass for a week tomorrow, but been poking around Pomade so happy to share thoughts tonight.
Just released a new version that has some explanations. The test flow is sign up, back, login, back, recover. Should give you an idea of what's going on
n's avatar
n 3 weeks ago
メールベースのサインアップ、ログイン、リカバリーのデモです。完成したらぬるぬるにしようかと思う。 View quoted note →
n's avatar
n 3 weeks ago
Nice! Looks like the baby is growing well.👶