Hacker News new | ask | show | jobs
by dannyw 3156 days ago
The key is indeed generated from your password - to be pedantic, the key is encrypted by your password with a hardening function.

I believe a copy of the key is sent to the recovery email. Not completely sure, I haven’t entered one.

1 comments

The key is not sent anywhere. Your recovery mail allows you to recover access to your account, but not access to your keys. So if you ever lose your password you will also lose the ability to decrypt your mail.