keybase / keybase/keybase-issues

Passphrase conflict

Open
#2,110 4 comments 0 reactions 0 assignees View on GitHub
Dominant language
No language data
Stars
899
Forks
40
PR merge metrics
No merged PRs in 30d

Description

I had a public key uploaded to Keybase, and I decided later to also add the private key via the Keybase cli. That worked, but it left my Keybase account in a strange state because the passphrase for the key (pre-established outside Keybase) didn't match my Keybase account password. I ended up in a state where (1) the key passphrase was used for decryption, (2) the Keybase password was used for login, BUT (3) neither passphrase could be used to change the Keybase account password nor confirm that I wanted to delete the key. I ended up being able to solve this by resetting my account password via the "forgot password" flow.

Contributor guide

No contributing guide indexed for this repository

Research direction

Start by reviewing the reported sequence: adding a private key through the Keybase CLI after uploading its public key, then attempting password changes or key deletion. Compare the key passphrase, account password, and forgot-password flow, and define the expected recovery and confirmation behavior before locating the relevant implementation and tests.

Written by the indexing model from the issue text.

Assessment

Domain
authentication, security
Issue type
Bug
Difficulty
4/5
Estimated time
3-5 days
Activity status
Stale
Clarity
Needs clarification
Newbie friendliness
25/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.