[Catalog-sig] User profile: PGP Key ID

Donald Stufft donald.stufft at gmail.com
Wed Feb 20 20:55:57 CET 2013


On Wednesday, February 20, 2013 at 1:44 PM, Bernhard Seibold wrote:
> Hi!
> 
> I noticed that in the user profile, the PGP Key ID is 8 hex digits only. 
> This is a bad idea:
> 
> http://www.asheesh.org/note/debian/short-key-ids-are-bad-news.html
> 
> Honestly I don't know what that Key ID is used for, but it should be 
> either fixed or removed.
> 
> Have a look at how Launchpad handles PGP keys. It sends you an encrypted 
> email with a confirmation link.
> 
> https://help.launchpad.net/YourAccount/ImportingYourPGPKey
> 
This is all true, but given they are currently mostly useless, and that
there is discussion on implementing a better system I think it makes
sense to just wait till we find out what the final solution is and go directly
to that. 

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mail.python.org/pipermail/catalog-sig/attachments/20130220/948bb1e1/attachment.html>


More information about the Catalog-SIG mailing list