On 01.03.2012 17:05, Ike Devolder wrote: >> 1) Nowadays, your application should be a PGP-signed email. You >> should also somehow verify that you are who you say you are, for >> example, by uploading your PGP key or fingerprint to your server or >> github. > > >> i'll do this tonight, i have no access to my keys because i'm at >> work > > voila, > > fingerprint: 0xdb2277bcd500aa3825610bdddb323392796ca067 > http://pgp.mit.edu:11371/pks/lookup?search=0xDB2277BCD500AA3825610BDDDB323392796CA067&op=vindex&fingerprint=on
Please also switch to PGP/MIME so the signature isn't part of the mail text, but rather an attachment. In thunderbird/enigmail it's under account settings -> opengpg security -- Florian Pritz
signature.asc
Description: OpenPGP digital signature