Tim Bouma's avatar
Tim Bouma
trbouma@getsafebox.app
npub1q6mc...x7d5
| Independent Self | Pug Lover | Published Author | #SovEng Alum | #Cashu OG | #OpenSats Grantee x 2| #Nosfabrica Prize Winner
Tim Bouma's avatar
Tim Bouma 5 months ago
CA: - Certificate Authority - Certified Assurance - Con Artist
Tim Bouma's avatar
Tim Bouma 5 months ago
A priest, a pastor and a rabbit walk into a blood clinic. The rabbit says, ‘I’m a typo!’
Tim Bouma's avatar
Tim Bouma 5 months ago
“The principles that made these systems function can be articulated concisely. Individuals should keep their agreements and refrain from aggression, fraud, or encroachment upon others. Violence is costly and to be avoided, while free and functional markets are to be preserved. Property rights must be respected, and judgments should aim at restitution for the injured party rather than punishment for its own sake. There are no victimless crimes, and privacy should be accorded in all areas of life except where privacy itself becomes a tool for fraud. Law deals with individuals only, recognizing no group entities, collective guilt, or collective responsibility. The reasonable man, not the perfect man or the omniscient judge, provides the standard for applying legal principles.” @Max View article →
Tim Bouma's avatar
Tim Bouma 5 months ago
I had to stop the latest WBD podcast. Too repetitive, too cringey.
Tim Bouma's avatar
Tim Bouma 5 months ago
• Never trust, always verify – Treat every User/PE/NPE, device, application/workload, and data flow as untrusted. Dynamically authenticate and explicitly approve all activity, adhering to the principle of Least Privilege. • Assume breach – Operate and defend resources under the assumption that an adversary already has presence within the environment. Plan for deny-by-default and heavily scrutinize all users, devices, data flows, and requests. Continuously log, inspect, and monitor all configuration changes, resource accesses, and environment traffic for suspicious activity. • Verify explicitly – Securely and consistently verify access to all resources, using multiple attributes (dynamic and static), to derive confidence levels for contextual access decisions. https://media.defense.gov/2026/Jan/08/2003852321/-1/-1/0/CTR_ZIG_DISCOVERY_PHASE.PDF
Tim Bouma's avatar
Tim Bouma 5 months ago
I want a natively addressable npub mesh network that is globally available. Have npub? Connect directly to the the mesh.
Tim Bouma's avatar
Tim Bouma 5 months ago
The first video shows a #safebox issuing a pass to another #safebox via a NFC card, then request (and verifying) the issued pass via the NFC card. The second video shows logging into a #safebox with the NFC card and viewing the issued pass. The final photo shows the NFC card. Simple and fast. What is not apparent is that all of the sensitive information (the pass) is encrypted and additionally encrypted with a quantum-safe key exchange and handled invisibly in the background using relays. The NFC card neither store nor conveys any information, except for an encrypted token the proves that the bearer has control of the #safebox. Onward! image
Tim Bouma's avatar
Tim Bouma 5 months ago
Bitcoin enabled permissionless transfer. Lightning enabled reciprocal transfer. Cashu enabled blinded transfer. #privatepayments