

Join the discussion
Write your take first — we'll ask for email only when you're ready to publish.
- Hacker News
- Why wasnt that key in an HSM?by shim__
- Discussion on source: https://news.ycombinator.com/item?id=49253250
- > after an unencrypted copy of the previous subkey was inadvertently committed to a private GitHub repository.
Unencrypted signing key. They just don’t care anymore.