Hi Elliott, all,

> Might I suggest you and other committers and supporters populate a web of 
> trust for GPG Tools 

I agree. @all: please feel invited to sign and upload our key 
(0x76D78F0500D026C4, see http://www.gpgtools.org/about.html).

> but you can see why I would be careful.

Sure and I totally understand.

> you might change the installer script to leave the signed package in Downloads

I think this is not how Sparkle works. Your current GPGMail bundle has the 
public key and we're signing the update in the "Sparkle notification system" 
(appcast). But the files you can download manually from gpgtools.org are all 
signed with our OpenPGP key.

> EPro:~ elliott$ gpg --version
> dyld: Library not loaded: /usr/local/lib/libusb-0.1.4.dylib
> Referenced from: /usr/local/bin/gpg
> Reason: image not found
> Trace/BPT trap

Mh, this should not happen. I created a ticket for Benjamin: 
http://gpgtools.lighthouseapp.com/projects/66001-macgpg2/tickets/51

Thank you for your mails.

Br, Alex

Attachment: smime.p7s
Description: S/MIME cryptographic signature

Attachment: PGP.sig
Description: This is a digitally signed message part

_______________________________________________
gpgtools-users mailing list
[email protected]
FAQ: http://www.gpgtools.org/faq.html
Changes: http://lists.gpgtools.org/mailman/listinfo/gpgtools-users
Unsubscribe: 
http://lists.gpgtools.org/mailman/options/gpgtools-users/[email protected]?unsub=Unsubscribe&unsubconfirm=1

This email sent to: [email protected]

Reply via email to