<oembed><type>rich</type><version>1.0</version><author_name>npub1m230cem2yh3mtdzkg32qhj73uytgkyg5ylxsu083n3tpjnajxx4qqa2np2</author_name><author_url>https://nostr.ae/npub1m230cem2yh3mtdzkg32qhj73uytgkyg5ylxsu083n3tpjnajxx4qqa2np2</author_url><provider_name>njump</provider_name><provider_url>https://nostr.ae</provider_url><html>📅 Original date posted:2014-05-22&#xA;📝 Original message:-----BEGIN PGP SIGNED MESSAGE-----&#xA;Hash: SHA256&#xA;&#xA;I&#39;ve got a PGP smart card reader and card with a securely generated key and pin entered per signature.&#xA;&#xA;Re: multisig, that&#39;s precisely why we want more than just a single maintainer signing commits.&#xA;&#xA;PGP isn&#39;t perfect, but perfect is the enemy of good.&#xA;&#xA;&#xA;On 22 May 2014 21:06:10 GMT+03:00, Jeff Garzik &lt;jgarzik at bitpay.com&gt; wrote:&#xA;&gt;Related:  Current multi-sig wallet technology being rolled out now,&#xA;&gt;with 2FA and other fancy doodads, is now arguably more secure than my&#xA;&gt;PGP keyring.  My PGP keyring is, to draw an analogy, a non-multisig&#xA;&gt;wallet (set of keys), with all the associated theft/data&#xA;&gt;destruction/backup risks.&#xA;&gt;&#xA;&gt;The more improvements I see in bitcoin wallets, the more antiquated my&#xA;&gt;PGP keyring appears.  Zero concept of multisig.  The PGP keyring&#xA;&gt;compromise process is rarely exercised.  2FA is lacking.  At least&#xA;&gt;offline signing works well. Mostly.&#xA;-----BEGIN PGP SIGNATURE-----&#xA;Version: APG v1.1.1&#xA;&#xA;iQFQBAEBCAA6BQJTfpWNMxxQZXRlciBUb2RkIChsb3cgc2VjdXJpdHkga2V5KSA8&#xA;cGV0ZUBwZXRlcnRvZGQub3JnPgAKCRAZnIM7qOfwhfVGB/448B6UvhN7bmFQxmLS&#xA;9+wlhWGYioJKUPspz2Wtk0p8v1y1XlDt0UxC+5ODin4a/Zk0+0x4G4MWyaUP1TnA&#xA;Wq9FquY3MwTXDrwWzmeQR4QcRbC+EMMk6kXswzT4d/2clUwB1pLl2MYGnS9DjUK2&#xA;of0kzZEbaQvxSKcFmvuqhz0QqGy84pkHAFBHfopS1j4WqIZpelUMzBGRYP8D1IQd&#xA;H/M2YxdQ7T8peiNigqWSyllchKqGoLG+KEr3mvTYRLkxoYw5XTcFyc5AmuTRfzEC&#xA;yhRc7CJwTZjHYahgZRPGJQM0qeopdIVAifCu9NoPgdkyuQL+X8XSidrU5Kbv/YeZ&#xA;Scv/&#xA;=GdA4&#xA;-----END PGP SIGNATURE-----</html></oembed>