The 100% biggest issues of Nostr are privacy issues. Specifically "IP Leaking via relays" and "seeing DM activity between known public keys".
For #1. To be clear, I'm not sure if thats nostr problem to solve....I mean VPNs / Tor exist for this exact reason.
However #2 is a harder problem to solve. If you are a known entity (Odell for instance), then your public key becomes known. Therefore its trivial to see "who is DM-ing who" and related "who is zapping who". Both of those are pretty bad for privacy.
derivative keys might solve some of #2
reply
NIP-44 has been merged few days ago and, even if not perfect, it solves many problems: https://github.com/nostr-protocol/nips/blob/master/44.md
About zaps, a private mode exists, even if not all client support it.
reply