Why Nostr? What is Njump?
2024-09-30 15:58:35
in reply to

mleku on Nostr: if you really are that worried about the network correlating an npub to an ip address ...

if you really are that worried about the network correlating an npub to an ip address you just use tor

avoiding associating an npub to an IP address by not signing is not helpful to actual relay service provision, and from an infosec perspective does not really have any impact on surveillance being done on you, because to a spook, 99% certainty is good enough, they are logging IP addresses and reqs anyway, in order to map out the social graph

requiring auth is a relay's decision, and a user does not have to use the relay, and a client dev should not force users to use a relay either, this is one of the things that really grinds my gears about a lot of nostr clients, they just run off and make reqs to all and sundry without even thinking about the consequences

fair enough don't auth to a relay you don't trust, but if the relay demands auth, then don't use it, simple as that


don't take that option out of the hands of the user because there is good reasons why relays might want to give more service to "legitimate" free users as well
Author Public Key
npub1fjqqy4a93z5zsjwsfxqhc2764kvykfdyttvldkkkdera8dr78vhsmmleku