Announcing StarfortDB: key database and core protocols of Zsub.
- single seed, multi-curve ECC, HD keys
- self-sovereign consentful trust model
- Ristretto over 25519, Ed25519, x25519 and secp256k1
- secure memory and key exposure minimization
- almost no dependencies (vendored libusb for macOS)
- secure self-custody with Shamir threshold shares
- offline-first operation with inbox/outbox
- cold/cool/warm/hot access tiers
- YubiKey support
- password-protected key exchange
- per-relationship dedicated keys
- peer-to-peer and n-way group message channels
- cascading key rotation with re-peering
- multi-device sync, subtree sync
- rule-based privacy-preserving hidden web of trust
- selective-disclosure authorization proofs
- remote signing
- multisig (MuSig2 and FROST)
- threshold VRF (distributed randomness)
- single and double ratchets
- password and TOTP storage
- Bitcoin wallets and Nostr support coming soon
We're building Zsub: Self-Sovereign Cryptographic Mesh.
This is component 2 of 3, and the largest one.
Please read the essay for a deeper view into our work.
Essay:
Code:
Builds:
Finally! Johnny CAN Encrypt — Zsub / StarfortDB
Codeberg.org
StarfortDB
Self-custodial, privacy-preserving identity and trust database for secure peering, key continuity, and hidden webs of trust.
Zsub Documentation
