keybase / keybase/keybase-issues

"keybase push" lists disabled keys

Open
#1,093 0 comments 0 reactions 0 assignees View on GitHub
Dominant language
No language data
Stars
899
Forks
40
PR merge metrics
No merged PRs in 30d

Description

Keys disabled through the "disable" command in GPG's edit-key shell still turn up in the keybase client's "push" key list.

I think it would be better to hide them. GPG after all pretends that disabled keys do not exist when attempting to encrypt for one too.

EDIT: For illustration purposes, my keychain contains keys that servers encrypt backups for. I disabled those keys so that I may decrypt the backups at any time, but the keys (despite being private keys) should never be used for signing or encryption on my end.

Contributor guide

No contributing guide indexed for this repository

Research direction

Start by reproducing the "keybase push" key list with a key disabled through GPG's edit-key shell. Trace how the client discovers keys for that list and verify that disabled keys are omitted while usable keys remain available; the issue does not name a source file or test.

Written by the indexing model from the issue text.

Assessment

Domain
cryptography
Issue type
Bug
Difficulty
3/5
Estimated time
1-2 days
Activity status
Stale
Clarity
Mostly clear
Newbie friendliness
45/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.