Hacker News new | ask | show | jobs
by drewcoo 396 days ago
That moves the problem to "how do we securely manage shared keys."

And it adds "how safe are those encrypted secrets [edit: changed from "keys" to more general language] that are committed?" and "what about previous revisions . . . because it's version control?" and "are we sure we're managing offboarding securely?"

There are probably other concerns but those are the ones the immediately shout at me.

1 comments

Keybase.io was a good option at one point
Curious, what happened to keyvase?
Acquired by Zoom (yes, that Zoom) and left to rot. A huge loss for the internet IMO. :(