looks neat! would love to use something like this at work. with regards to the S3 fail-over, how do you manage per-account access/authz? source of fetch.go seems to indicate a single bucket is used for the fail-over: http://bit.ly/2p6ozyN do you create per-account restricted policies and somehow have the client assume a particular IAM role or do you just have a world-readable bucket and rely on PGP for secrecy? UPDAT…
Thanks for the feedback and for laying out your investigation :) I'd say it's pretty unfair to call a 20 char id 'security-by-obscurity', unless you want to call almost every username/password authentication mechanism the same. The id has vastly more entropy than the average password and is far beyond brute-forcible. Along the same lines, there are no known attacks that can break 2048 bit PGP with a sufficiently stro…
your product is very well designed, seems like a tremendous customer experience. best of luck; i hope you continue to grow