Skip to content

Restrict override of existing OpenPgpKey #1168

@y3n4

Description

@y3n4

Currently if I delete an OpenPGP key, I need to confirm with my password.
If I upload a new OpenPGP key for an email address that has an existing OpenPGP, I am not prompted a password. That is inconsistent, this i a Delete-and-Upload action and should have same restriction.

TODO: Check weither New OpenPGP key has same fingerprint and is not older (->downgrade) than existing key for email. If either is false, should prompt password.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions