atsign-foundation / at_server

The software implementation of Atsign's core technology
https://docs.atsign.com
BSD 3-Clause "New" or "Revised" License
39 stars 13 forks source link

Information leakage #294

Open cconstab opened 2 years ago

cconstab commented 2 years ago

When looking at @k

I see the public keys of other @signs.. Where did these come from? Why is this information leaking out ?

Is this a bug with cached keys ??

cpswan commented 2 years ago

@cconstab it might be useful to explain how you were looking at @‎k, and if it's safe to do so providing some examples of what you saw.

murali-shris commented 2 years ago

@kalluriramkumar should we prevent cached keys from appearing in public scan?