Very cool! I like it!
What about using Nostr relays to also back up your data passwords? I built a library called Tablinum around this idea. Local first but backed up to Nostr relays using NIP-59 gift wrapped events.
HN user
Very cool! I like it!
What about using Nostr relays to also back up your data passwords? I built a library called Tablinum around this idea. Local first but backed up to Nostr relays using NIP-59 gift wrapped events.
That's a lot of information about something that does not really matter in practice. It's not until ew get to the very end of your comment that we get to the actually relevant part for the discussion.
So let's talk in practice: when you sign up for Bluesky, they store the private key for you. This way, for users that don't care about any of these details, they do not have to think about it at all. It's saved with the rest of your account data, you don't have to worry about backups or anything.
However, at any time, any user can register a rotation key with the PLC directory. To do this, you generate a new public and private key, and then store that private key wherever you'd like. All the usual caveats here apply. You can then use your existing private key to add this new public key to your account. Once you do that, it shows up in your DID document as a rotation key. You can use that rotation key to add more keys, remove the Bluesky owned keypair, whatever you want. Now it's not stored by Bluesky.
The majority of users have not done this, it's true. But they can. Whenever they'd like.
The Bluesky PDS stores (and has access to!) your private keys. They are in full control of your identity. It just so happens that 99.99% of users are on the Bluesky PDSs AND 99.99% of users will choose the path of least resistance and in practice NEVER register an external rotation key. This is exactly the problem. It is massively centralized and a rug pull from Bluesky would effectively just kill off the network.
It's insane that this is just hand-waved away because "you can just self-host" or "you can just register an external rotation key". If you think users will actually do this I have a bridge to sell you.
Where are your rotation and signing keys stored? Who can access them? Talking here about the majority case.
Nope. When I’m talking about identity I’m speaking strictly of the keys that sign your messages and the pub key derived from it. In every other cryptographic system that is your identity. It is absolutely correct that the PDS has complete control over your keys when it comes to 99.99% of users. I challenge you to prove the opposite.
That’s a very narrow definition of decentralisation. In any case - both atproto and fediverse are massively centralised compared to something like Nostr, and it’s not even close.
The fact that the PDS in practice owns your identity in the vast vast majority of cases is such a dumb trade off that it’s honestly laughable. Should Bluesky decide to splinter off of the network there would be like 50000 people left.
Stop telling people that it’s decentralised in any meaningful way and be honest about it instead. That’s the issue. The dishonesty and tricking users.
You won’t have decentralisation on Atproto because the protocol itself incentivises centralisation.
The end of the article explains why this isn’t necessarily better than a centralised service. Yes - you can self host but no one (yes, there a few exceptions) does in practice. Your PDS host can pretend to be you on any atproto application.
The point of the article is that 99.9% of users will not take custodial control of their identity - not that they can’t.
Yes - the trade off is centralisation.
Atproto is not decentralised, it’s faux decentralised. You can technically be sovereign, but incentives and the way things have been done results in massive centralisation - 99.9% of users are on a Bluesky PDS and have not registered a higher priority rotation key. And they won’t, ever, because that’s how humans work.
The day Bluesky decides to enshittify there’s a very real possibility that they might also just stop allowing people to extract their keys and splinter off the network. The enshitification begins when VCs turn upp the heat it they start getting low on cash.
It’s great that tings like this exist but as long as this is how identities work on ATProto it’s unfortunately going to be a niche thing.
You can just read the documentation: https://atproto.com/guides/overview#account-portability
“The signing key is entrusted to the PDS so that it can manage the user's data, but rotation keys can be controlled by the user, e.g. as a paper key. This makes it possible for the user to update their account to a new PDS without the original host's help.”
Yes you can but the vast majority don’t, and that is what matters. When Bluesky goes rogue because of profitability issues or VC pressure, the vast vast majority of users lose their identities on the wider network. Users will choose the path of least resistance. It’s all about incentives.
Correct, but it’s not decentralized in any meaningful way, which is what a lot of ATProto proponents want you to believe.
No one (not literally of course) self hosts their PDS. Like 99.9%, if not more, are using the Bluesky PDSes.
Looking at the studies on the site I’m only seeing comparisons vs placebo and activated charcoal - why not compare to non modified regular beta glucan that is in most oats?
Not parent but I wrote an article about how PDSs (the thing that hosts your data) control your signing and rotation keys. It's technically possible to self-host but as always, the default becomes the norm. 99.999% of users on ATProto host their data on BlueSky servers.
https://kevinak.se/blog/who-actually-owns-your-atproto-ident...
There is - https://flotilla.social/
Yes. Here are some specifications that describe it: https://github.com/nostr-protocol/nips/blob/master/17.md and https://github.com/nostr-protocol/nips/blob/master/59.md
So if a user is banned from their PDS and they haven't backed up their keys, the community is screwed? That seems like a pretty big flaw.
Yep!
People in the Bitcoin space have been screaming at the top of their lungs about this for decades at this point, but it's hard to work against the marketing machine that comes from these ICOs.
On the other hand, shining a light on things that are not what they seem is very good, which is what I tried to do.
I did, we just have different views of what decentralized means.
Is there anything wrong with this article?
I think it would be better if you actually engaged with the article and articulated any criticism you have with it instead of just writing things off because I like other solutions to decentralized social media more.
Yep! This pretty much!
One way to combat this would be to force users to stake something. Pay 10 bucks to your account and if you misbehave by spamming or posting only AI slop, you lose it. Brings with it other problems, of course.
Bitcoin via the Lightning Network is near cost-free and instant. And it's not a hack, it's just a network of payment channels.
Because centralization matters. It is what stops a hostile agent from ruining things. There is no real win in being "semi-decentralized".
The whole premise of a free social media protocol is that it is resistant to hostile takeovers. All issues stem from this.
1. I absolutely feel very strongly about decentralization. If there is a part of the stack that isn't it opens up the whole project to the kind of issues I'm talking about in the blog post.
2. Then it is not made to be resistant to the above problems
3. Actually, this is where you are wrong! If atproto implemented a more robust, decentralized default identity system I would be a very happy camper.
I make comments because I care about the subject, obviously. I use Bluesky a lot and I don't want it to end up like Twitter.
In theory, yes. In practice, not really, since the vast majority of users won't care to do it.
I am, I just don’t have the same values in terms of what I want from my decentralized social media.