Skip to Content
Draft · Draft for review. Not published yet; content may change.
Verify Accountsname@creds.id

name@creds.id

Your creds name does two jobs:

  • It is your page’s short address, creds.id/@name.
  • It is a NIP-05  identifier, name@creds.id, for your identity’s Nostr key. Nostr apps that support NIP-05 can check it.

You choose it during setup. To change it later, go to Settings › Public Page › Username.

Name rules

  • 3 to 30 characters, using only lowercase letters a–z and digits 0–9.
  • No dots and no punctuation. A creds name therefore can never look like a domain, a Bluesky handle or an ENS name, so creds.id/@… always knows which kind of address it is reading.
  • Some names are reserved: staff and admin roles, brand names, support and legal words, mail and DNS infrastructure words, and a few others.
  • One name per identity. Picking a different name counts as a rename, and you can rename at most once every 90 days. After a rename, your old name redirects to the new one for 90 days.
  • A name is never handed to a different identity. If a name is released, it stays retired, and only the identity that held it can take it back. A creds.id/@name printed on a card will not end up pointing at a stranger.

How your name is verified

When you register a name, the app does three things, in this order:

  1. It signs your page and publishes it.
  2. It claims the name in the creds.id directory, with a request signed by your identity’s Nostr key.
  3. It publishes your Nostr profile, which says name@creds.id. This is the other direction of the binding.

The directory answers in the standard NIP-05 format at https://creds.id/.well-known/nostr.json?name=<name>: the name, your public key, and the relays where your page is published.

How visitors check it

A visitor’s browser checks both directions: the directory says which key owns the name, and that key’s own Nostr profile must claim the name and name the same identity as your page. Only then does @name get a green check. See How visitors check.

What the directory stores

For each name, the directory stores the name, your public key, your relay list, the name’s status (active, redirected or released), timestamps, and redirect details after a rename. It also keeps a log of registrations, releases and recoveries, including the signed request. Log entries are deleted after 90 days.