PGP Key signing policy of Emelie Graven

Key covered by this policy

pub   ed25519/0x9DEBB56FE610BAD1 2021-09-27 [SC]
      Key fingerprint = 16D3 6E7B FBB0 0641 BBF6  574D 9DEB B56F E610 BAD1
uid                   [ultimate] Emelie Graven <emelie@graven.dev>
uid                   [ultimate] Emelie Graven <emelie@graven.se>
sub   ed25519/0xC11123726DBB55A1 2021-09-27 [S]
sub   cv25519/0xF19DB35B8CF6E9F9 2021-09-27 [E] [expires: 2022-03-26]
sub   ed25519/0x4FEAE545EC7D8ACB 2021-09-27 [A] [expires: 2022-03-26]

Certification levels

I use three levels of certification when signing keys. Each certification level also encompasses the requirements of levels below it.

Signing process

Steps 1 through 2 are only required for casual and positive certification, steps 3 through 5 are always required.

  1. The signee’s identity is verified according to the requirements.
  2. The signee gives me a physical copy of their key fingerprint, or in the case of verification over video chat, the fingerprint is supplied verbally.
  3. The signee sends me a signed email from each email address corresponding to a UID they want signed.
  4. I will reply to each email with the signed key in encrypted form.
  5. The signee decrypts the signed keys and optionally publishes them.

General

I appreciate if anyone whose keys I sign would return the favour and sign my keys in accordance with their own signing policy.

Changelog

2021–11–21: Initial release