Looking through the GPG CVE list, it appears that GPG has a fantastic
security record.  This seems to jus Most of the recent vulnerabilities have
been side-channel attacks.

Is it useful to use split-GPG with a hardware token to prevent side-channel
attacks?

Also, is it best to use one signing key per project one is working on?

-- 
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected].
To post to this group, send email to [email protected].
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/CAJEMUN9e6RC%3Dgfsf5%2Bk3Y0RWMa9Cu%2BOuHhFyFN8-1pYpuV0a9w%40mail.gmail.com.
For more options, visit https://groups.google.com/d/optout.

Reply via email to