Hi,
Please excuse not being strictly about age, but being related, I hope to reach some people who will be able to give me feedback and possibly forward the idea around so maybe it could one day come to fruition.
In Bitcoin land, the problem of secret key material has one of the most pragmatic and simple approaches.
Users generate secret key once, potentially completely offline on paper and using coin flips using BIP39:
and then are able to infinitely derive endless amount of deterministic derived keys using BIP32:
This simplifies backups, disaster recovery, interoperability and so on.
After so many years, I can't believe that we still can't use the same approach (and even the same keys and hardware devices (aka hardware wallets) in other software.
I'm not a cryptographer, so the main blocker for me implementing a prototype tool like this myself is lack of deterministic key derivation implementations for anything other than secp256k1 which seem to support only signing (and not de/encryption). ed25519 seem to support encryption, but not deriving keys.
I tired to get more feedback in other places, including:
twitter and some cryptography-related chats, but I never made any progress engaging.
I would really appreciate any feedback helping me move this idea forward.
Regards,
Dawid