Re: [openpgp] Overhauling User IDs / Standardizing User Attributes (was: Re: Scoped trust (signatures))

2018-06-27 20:45:00
Forgive me, Leo, but I don’t understand what problem you’re trying to solve, 
but I’m going to say that’s my fault. Nonetheless, could you reiterate for 
those of us who weren’t paying proper attention before?

UserIDs are intentionally a huge hand wave. It’s an arbitrary UTF-8 field. Put 
whatever you want into it. Yes, by convention it’s an email address, but even 
at the time that that was common it was convention only. When I was with PGP 
Corporation, we made software signing keys that merely said they were software 
signing keys, as well as other keys that had no email address, but a text 
description of what they were.

There’s no reason you can’t put whatever you want in some other sub-packet or 


