There are always going to be tradeoffs, I can easily see a shared key shared through gift wrap DMs be a good enough usecase for something like say: regular "Instagram stories", it is good enough privacy of content. Privacy of metadata is also very hard to crack I. This case, but still maybe doable with chain analysis kind of stuff. So.. Should you sell drugs with this something like this? Probably not, could you share fun food pics on your stories with your friends that you don't want to tell the whole world about? Yes.

Replies (1)

Idk I think key rotation or encryption key is over complicate something we don't need nip17 dont leak metadata, unless you are supposing people will lose the nsec and all their history gets compromised or something.
Vitor Pamplona's avatar Vitor Pamplona
Did you know that NIP-17 was designed to keep metadata private even if devs make mistakes in their apps? Designing a DM protocol where you control the server and app on a single codebase is very different than designing something anyone can code flawlessly from scratch.
View quoted note →