keybase / keybase/keybase-issues
Passphrase conflict
- Dominant language
- No language data
- Stars
- 899
- Forks
- 40
- PR merge metrics
- No merged PRs in 30d
Description
I had a public key uploaded to Keybase, and I decided later to also add the private key via the Keybase cli. That worked, but it left my Keybase account in a strange state because the passphrase for the key (pre-established outside Keybase) didn't match my Keybase account password. I ended up in a state where (1) the key passphrase was used for decryption, (2) the Keybase password was used for login, BUT (3) neither passphrase could be used to change the Keybase account password nor confirm that I wanted to delete the key. I ended up being able to solve this by resetting my account password via the "forgot password" flow.
Contributor guide
No contributing guide indexed for this repository
Research direction
Start by reviewing the reported sequence: adding a private key through the Keybase CLI after uploading its public key, then attempting password changes or key deletion. Compare the key passphrase, account password, and forgot-password flow, and define the expected recovery and confirmation behavior before locating the relevant implementation and tests.
Written by the indexing model from the issue text.
Assessment
- Domain
- authentication, security
- Issue type
- Bug
- Difficulty
- 4/5
- Estimated time
- 3-5 days
- Activity status
- Stale
- Clarity
- Needs clarification
- Newbie friendliness
- 25/100