Mathias Hall-Andersen, @alicharizard, @grittygrease and I just released our design mixing the QUIC protocol with the Noise protocol framework (instead of TLS 1.3) https://t.co/kLDNDLPNDy
@rootlabs@grittygrease@Kryptoblog@BerndPaysan@brouhaha That'd work, too. Though, since the signature must not be exposed and is ultimately fed through a PRF, risk here "seems small." I'm happy to chat about this more.