@orionwl wonder if this would be a good time to try bip322 sigs for releases?

@ajtowns @orionwl No. PGP is far superior to any of these single key standards, as it supports the web-of-trust.

PGP could be better. But until someone actually replaces it, why use niche standards that will never replace it?

@pete @ajtowns right, replacing PGP is not the goal here

i think PGP as a system is fine, there's no better replacement for the entire thing, i have some qualms with gnupg implementation—e.g. that it still isn't a library, that programmatic clients have to resort to ambigious text parsing—but that doesn't mean the system itself was a bad idea

@pete @ajtowns one thing to look into is that GPG supports ed25519 as a signature scheme which better lends themselves to multiparty/threshold,

Follow

@orionwl @ajtowns Yup. secp256k1 too, so any scheme that can do single-key-multisig for Bitcoin can also do it for pgp.

· · Web · 0 · 0 · 3
Sign in to participate in the conversation
Mastodon

The social network of the future: No ads, no corporate surveillance, ethical design, and decentralization! Own your data with Mastodon!