Where is it written that Spambayes would "add a token verifying the presence of a domain key entry in the header"? Doing so would seem to be self-defeating if credible forgeries of domain keys become widespread and only marginally helpful otherwise (since the "I know it when I see it" model of spam detection works very well for humans and fairly well for Bayesian filters without this additional complication).

For that matter, where is it written that the use of domain keys will become widespread? (But I guess that's a topic for another discussion.)


> Will we want to have SpamBayes check these (since many SB users will
> have no control over what happens at their ISP or corporate gateway) as
> they become widespread?
> Just as obviously, spammers will attempt to forge them as well (to fool
> filters like the current SpamBayes that would just add a token verifying
> the *presence* of a domain key entry in the header), or use
> yet-to-be-revoked keys from domains obtained through fraudulent means. I
> think some intelligence must be built into spambayes to handle these...

