NEC-138: Support path to release an email when both passphrase and recovery key are lost #199
No reviewers
Labels
No labels
area:docs
area:identity
area:ops
area:plugin
area:server
channel:community
channel:direct
channel:owned
channel:press
channel:social
e2ee-constrained
gate:at-ga
gate:pre-ga
marketing
parity
relay:absent
relay:planned
relay:requested
relay:supported
risk:additive
risk:contract
risk:none
usability
No milestone
No project
No assignees
2 participants
Notifications
Due date
No due date set.
Dependencies
No dependencies set
Reference
Nectenda/nectenda!199
Loading…
Reference in a new issue
No description provided.
Delete branch "worktree-nec-138-support-path-to-release-an-email-when-bo"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Task: NEC-138 — https://projectron.nerchure.com/tasks/138
Someone who has lost both their passphrase and their recovery key can now start over with the same email address: they ask from a locked vault, the request waits seven days while every signed-in device shows it and can cancel it, and then the identity service signs every device out, has each sync server remove or rename their seats under a signed command, and only then frees the address. The old identity is tombstoned, never deleted, so support can restore it if the recovery key turns up. Support can also start, speed up (after checking ownership) or cancel a release. Adds CRYPTO-097/098/099 and WIRE-064, the runbook procedures, and the one legitimate key change in security-model.md. User-facing guide pages are NEC-143.
Spec:
docs/changes/NEC-138-release-an-email/spec.mdChangelog
If you have lost both your passphrase and your recovery key, you can now start over with a new, empty account under the same email address; the reset waits seven days and any device still signed in can cancel it.
ae2ea885e334b540597e34b540597e32bb169bf0