Ring-Ring

Badges on Nostr

Ring-Ring gives riders badges for movement it measured. A badge is not a row in our database — it is a signed message on a public network, and this is where you can read one.

Riders find theirs in the Ring-Ring app, under Settings. It starts with npub1 and is safe to share — it is the public half.

What a badge is here

Three separate messages, each signed by a key. Ring-Ring publishes what the badge means and that a particular key earned it. The rider publishes which of their badges they want shown. Nobody can sign for anybody else.

That last part is the point. A rider's secret key never leaves their phone, so Ring-Ring cannot decide what a rider displays — and a rider cannot award themselves a badge. Two claims, two keys, and you can read both.

Which keys are Ring-Ring's

Two, with different jobs, so that one of them leaking cannot be used to do the other's work.

Signs every badge
npub19f3uf64d6fwn0l2wk3acnw030c88pd52wwldz3pxzg09juadrgpq52j5us
Signs what Ring-Ring says out loud
npub1nre0uwzp6ms7zf22kk905jar4ma70eum8z70hjzzhfklts777nuqyypa2x

Both are named in https://ring-ring.nu/.well-known/nostr.json, which only somebody who controls that domain can serve. That is what ties these keys to us rather than to anyone claiming our name.

Checking it without us

Every badge page prints the event ids it drew from and the relay that holds them. Ask that relay yourself, with any Nostr client:

wss://relay.ring-ring.nu

You get the same messages this site got. If we ever said something different, the difference would be visible — which is the only kind of trustworthy worth the trouble.