I don't believe that clients should hold keys in any capacity but I can appreciate Primal trying to make this process a bit simpler. Of course, I believe only you should hold your keys which is why I've been working on Signet (just search on Github, I spam it here enough lol).
Login to reply
Replies (5)
100% agree that you should hold your own keys! But if the device is yours, and the app doens’t phone out the nsec, isn’t it just as safe as holding it yourself?
Maybe I’m just too naive with my iOS sandboxing
I haven't dove into signet, but is there some way it could be run (docker perhaps) so I can verify there isnt internet access directly?
yeah of course. there's docker instructions in the readme (it's actually the preferred method of use).
Sick.
You're absolutely right.