shafemtol on Nostr: What you could do is hash the shared secret curve point `S` (preferably using a ...
What you could do is hash the shared secret curve point `S` (preferably using a tagged hash function) into a shared private key `r`, then use the corresponding public key `R = r * G` for the `p` tag. This would not leak the actual shared secret.