So what are the next steps..?

After ETHBerlin we are working on brining the prototype to a functional MVP. To make this possible and sustain the development resources on our end while still maintaining an open source status for the project, we are asking you to contribute through the Gitcoin Grants page to the project if you’re interested in seeing this come to fruition.

👉 You. — Gitcoin Grants page

More information can be found there, as well as a tentative roadmap with the next phases.

Okay.. but how does You. actually work?

You. provides a secure Chrome Extension, which communicates with your You. app installed on your phone. Whenever there is a login field and a password available, the chrome extension recognizes it and triggers a push notification, you then need to confirm the login with your biometrics, after the confirmation your browser logs you successfully into the web service.

You. has 3 components

Mobile Application

This is the actual password manager and the bridge between your passwords and you. Using the secure enclave unlocked with biometrics the user becomes the authentication. Whenever a new login request reaches the device the user is prompted to approve the authentication. If the approval was positive using 3box messaging the encrypted credentials are sent to the Chrome Extension who will input them in the form.

Chrome Extension

This component is responsible to detect sites that contain login fields and the password manager has a credential for. The latter is done by using a Cuckoo filter which is shared from the mobile application. The Chrome Extension itself does never have access to all passwords at the same time, only the ones forwarded by the mobile application.

Push Notification Oracle

This component is responsible to trigger a push notification on the mobile device. The communication with this oracle happens using 3box messaging feature. The workflow is that a Mobile Device registers a given Ethereum address with a push token. Then when the Chrome Extension gets a login request, it will forward the details to the push oracle, who sends a push notification to the mobile application.