Skip to content

Allow one OpenPGP key per alias #262

@t2d

Description

@t2d

Aliases are a core feature of Userli. We should support WKD lookup for them as well. We should at least enable to upload multiple keys per user and one key per alias.

To not break pseudonymity, I would encourage or maybe even enforce to not have multiple addresses per key. I think this is considered best-practice today. From https://posteo.de/en/help/policies-for-public-keys:

OpenPGP keys

Your public OpenPGP key must fulfill the following criteria if you wish to store it at Posteo:

  • The name field must be empty or contain your email address only
  • The public key can only contain one email address. Subkeys or multiple email addresses are not permitted.
  • The key must contain your Posteo email address or one of your alias addresses
  • The key must not be signed by others
  • The key must not contain a photo or any other personal details

Furthermore, a key should be deleted when deleting the corresponding alias.

Metadata

Metadata

Assignees

No one assigned

    Labels

    enhancementNew feature or request

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions