Skip to content
This repository has been archived by the owner on May 4, 2020. It is now read-only.

Multiple keys = tracking bits #5

Open
martinthomson opened this issue Feb 6, 2020 · 1 comment
Open

Multiple keys = tracking bits #5

martinthomson opened this issue Feb 6, 2020 · 1 comment

Comments

@martinthomson
Copy link

In the security considerations, you have:

TODO: Can client's flag bad server practices?

Given that use of multiple keys can be used to segment users (with arbitrary granularity even), it seems that this system depends critically on having some way to limit the number of keys that a server can use.

@alxdavids
Copy link
Owner

Yes, this needs to be addressed. There have been some limited discussions about using an approach similar to key transparency, but we are still yet to specify anything concrete.

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants