keybase / keybase/keybase-issues

New indefinit passphrase cache + opt out not documented?

Open
#2,598 2 comments 0 reactions 0 assignees View on GitHub
Dominant language
No language data
Stars
899
Forks
40
PR merge metrics
No merged PRs in 30d

Description

During today's update I was informed that from now on keybase desktop (win) will no longer ask for my PGP passphrase (or was it keybase.io password?).

It gave me an option (on the CLI) to opt out but transfer PGP operations back to GPG.

I can for the life of me not find those things in the documentation on the website. Neither the new security concept nor the opt-out commands.

Can you supply a link or update the documentation?

Does droping back to GPG mean just getting asked for the passphrase by gpg for every en/decryption or does it mean all en/decryption features will be disabled in keybase.io?
(The former should definitely be an option)

How is the cached passphrase stored in between client restarts?

Contributor guide

No contributing guide indexed for this repository

Research direction

Start by locating the Keybase website documentation covering the desktop client's PGP passphrase behavior and the CLI opt-out command. Verify what reverting to GPG changes and how the passphrase is stored across restarts. Done means adding documentation links and clearly answering the opt-out, fallback, and storage questions.

Written by the indexing model from the issue text.

Assessment

Domain
documentation, security
Issue type
Documentation
Difficulty
3/5
Estimated time
1-2 days
Activity status
Stale
Clarity
Mostly clear
Newbie friendliness
35/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.