Nostr signing suite

Diogel

Diogel is the threenine suite for Nostr signing safety, identity control, and private-key protection across browser, mobile, and organisational workflows.

One signing boundary, three operating environments. Apps request a signature; Diogel returns one. The private key stays inside the boundary.

  • NIP-07 signing
  • Chrome and Firefox
  • Open source
  • Local encrypted vault
Diogel Nostr signing suite

Suite map

Diogel separates signing by operating environment rather than by feature list. Each area protects the same private key boundary for a different kind of user.

01Available now

Porwr

Browser signer

A NIP-07 browser extension that injects a standard signing provider, keeps keys in an encrypted local vault, and asks for approval per site and event kind.

For: Individual Nostr users signing in the browser.

View the source
02Suite direction

Android

Mobile signer

An Android-first signer for app-to-signer workflows, targeting NIP-55 signing so mobile clients can request signatures without holding the key themselves.

For: Mobile Nostr users and Android client developers.

03Suite direction

Bancwr

Self-hosted bunker

A self-hosted Nostr bunker for shared identities, giving teams governed signing, access control, recovery, and an auditable record of what was signed.

For: Teams, brands, businesses, and automation operators.

What this suite owns

Diogel is a key authority layer for Nostr, not a general-purpose Nostr client.

  • Keeping Nostr private keys inside a controlled boundary instead of pasting them into websites and apps.
  • Encrypting keys at rest, gating them behind a password, and locking the vault after inactivity.
  • Turning signing requests into readable approvals, so you can see what an app is asking for before you allow it.
  • Managing multiple identities and switching between them without juggling separate tools.
  • Enforcing permissions by site and by event kind rather than granting blanket access.
  • Extending the same boundary to mobile and self-hosted organisational signing.

What it deliberately leaves alone

  • Being a Nostr feed, social client, or content application.
  • Custodial key storage or any threenine-held copy of your private key.
  • Analytics, tracking, or telemetry beyond the signing job itself.
  • Relay, storage, and backend infrastructure, which belong to the Nostrfi suite.

Proof and maturity

An honest read on what exists today, what the suite is building towards, and what should not be assumed yet.

Proof today

The browser signer ships

  • Published on the Chrome Web Store and Firefox Add-ons.
  • Open-source repository available for review and audit.
  • NIP-07 signing, multi-identity management, and per-site permissions in use.
  • A published setup guide covering install and first signing request.
Suite direction

Mobile and organisational signing

  • Android signer targeting NIP-55 app-to-signer flows.
  • Bancwr self-hosted bunker for shared and delegated signing.
  • Consistent approval and permission model across all three environments.
Not yet

What to hold us to later

  • Android and Bancwr are suite directions, not released products.
  • There is no hosted signing service and no support SLA.
  • Treat published release notes and repositories as the source of truth for status.

Where to start

Pick the route that matches how you sign today.

Individual

Stop pasting your key into websites

Install the browser extension, import or create an identity, and approve signing requests one at a time instead of handing sites your private key.

Read the setup guide

Developer

Build against a standard signer

Target the NIP-07 provider interface so your Nostr web app can request signatures from any compatible signer, Diogel included, without key handling of its own.

What a NIP-07 signer does

Mobile user

Keep the key off the client

The Android signer is the suite direction for app-to-signer workflows on mobile. Follow the repository and release notes for status before planning around it.

Team or brand

Govern a shared identity

Shared organisational keys need access control, recovery, and an audit trail rather than a copied nsec. Bancwr is the suite direction for that work, so follow the suite repository for status.

Follow the suite

Install the browser signer

Porwr is the Diogel browser extension. It is free, open source, and available for Chrome, Firefox, and Chromium-based browsers such as Edge, Brave, Arc, and Vivaldi.

Frequently Asked Questions