keybase / keybase/keybase-issues
private key on server?
- Dominant language
- No language data
- Stars
- 899
- Forks
- 40
- PR merge metrics
- No merged PRs in 30d
Description
I'm not an expert on crypto. This line in `keybase gen --push` made me nervous:
`Push your encrypted private key to the server? [Y/n] n`
Why would anyone put their private key on the server? (Convenience/backup safety, I'm guessing)
What is it encrypted with?
I really think this should be prefaced with some introduction in-line. At a minimum this should be documented on the site somewhere. I went through the setup/install docs and didn't find anything. The help was far too minimal for `keybase keygen` also.
Contributor guide
No contributing guide indexed for this repository
Research direction
Review the setup/install documentation and the `keybase gen --push` and `keybase keygen` help text first. Document what happens when an encrypted private key is pushed, what protects it, and add the requested explanation inline or on the site.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- cryptography
- Domain
- cryptography, documentation
- Issue type
- Documentation
- Difficulty
- 3/5
- Estimated time
- 1-2 days
- Activity status
- Stale
- Clarity
- Mostly clear
- Newbie friendliness
- 35/100