keybase / keybase/keybase-issues

Proof of Mastodon Account Ownership always Fails

Open
#4,107 2 comments 0 reactions 0 assignees View on GitHub
Dominant language
No language data
Stars
899
Forks
40
PR merge metrics
No merged PRs in 30d

Description

To Reproduce:

Create a Mastodon account if you don't have one already. Click 'Add more identities' in the Keybase app (Winx64) and choose your Mastodon instance. You'll be prompted for your username. The proof of ownership process then continues by redirecting the user to a specially crafted URL located at the Mastodon instance.

**That URL always leads to a 404 error.**

It doesn't matter which Mastodon instance is being confirmed. It always fails.

Contributor guide

No contributing guide indexed for this repository

Research direction

Reproduce the failure through the Keybase app's “Add more identities” flow on Winx64, selecting a Mastodon instance and username. Inspect the generated Mastodon proof URL and the ownership-verification entry point; done means the URL no longer returns 404 and the proof completes for a Mastodon account.

Written by the indexing model from the issue text.

Assessment

Domain
authentication
Issue type
Bug
Difficulty
4/5
Estimated time
3-5 days
Activity status
Stale
Clarity
Mostly clear
Newbie friendliness
35/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.