Hot Summary: Keybase is what you get when you care about crypto but not about security and completely not about privacy.
@bandie verbose?

I’m updating my Pretty Bad Privacy blog post with a special section for keybase.

@lanodan
Well, how ever, I agree partially. I didn't upload my private key and I use it as an additional info how to contact me.

@bandie Well, you’re still giving them a verified social graph then…

@lanodan
The fun fact is that I don't talk to those people whom I follow/who follow me. :D

@bandie Yeah but keybase isn’t really a one person problem considering the size of it and how it’s some sort of a facebook of the broken PGP.
And still, the social-graph data is right as you know theses people at least enough to have a follow from them or follow them.
Follow

@lanodan
The last sentence is also not true. ;P

Why is PGP broken for you?

@bandie Check https://hacktivis.me/articles/Pretty%20Bad%20Privacy I guess, it’s still a draft and I need to copy some of the stuff from the “See Also” links, but the basic stuff is there.
@moonspark What you get with the “miminal” gpg --edit-key command.
It basically cleans it up and avoids putting external signatures.
Sign in to participate in the conversation
chaos.social

chaos.social - because anarchy is much more fun with friends.
chaos.social is a small Mastodon instance for and by the Chaos community surrounding the Chaos Computer Club. We provide a small community space - Be excellent to each other, and have a look at what that means around here.
Follow @ordnung for low-traffic instance-related updates.
The primary instance languages are German and English.