2) I share a file-based password manager with other people, that is basically just a collection of PGP-encrypted files with multiple recipients (managed using "pass").
3) I sign git tags, so that people know I have made the release.
4) I rely on the fact that all Ubuntu packages are signed and I will not accidentally install a package from an unknown source.
5) I have encrypted backups.
- to sign tags in Git for open source projects that I maintain
- to sign custom packages I build (and host) for Arch Linux
If you're interested, check out duplicity at http://duplicity.nongnu.org/.
Side note: using pgp with MacOs Mail is super easy https://gpgtools.org/ (the project is currently working on Sierra support)
I have been using enigma on thunderbird in the meantime, which makes me appreciate how well the native mail app functions.
Can't wait for that fix.
I don't think I've ever used PGP when emailing a stranger, but I very rarely email strangers in the first place.
- I use it as my ssh key
- I use it to sign my git commits and tags
- I use it to share credentials with people (e.g. "hey bob, what's the password to the shared XXX account" => pastes to me in IM encrypted to me)
- I use it to encrypt passwords in my password manager 1) Company communication
2) Signing critical commits, tags
3) Encrypted-mail-to-self
4) Encrypting critical files
5) Communicating about security vulnerabilities
I don't use it for backups (I use Borg), or for SSH (25519 keys).2. Signing git commits/tags