logoalt Hacker News

gruezyesterday at 3:26 AM2 repliesview on HN

So, EV code signing certificates? Windows has that, and it'll verify that right in the OS. Git for instance, shows as being signed by

CN = Johannes Schindelin O = Johannes Schindelin S = Nordrhein-Westfalen C = DE

Downside is the cost. Certificates cost hundreds of dollars per year. There's probably some room to reduce cost, but not by much. You also run into issues of paying some homeless person $50 to use their identity for cyber crimes.


Replies

brabelyesterday at 11:58 AM

You don’t need certificates , just use PGP keys like Maven.

show 1 reply
mc32yesterday at 4:20 AM

How would the homeless chap have the creds or gravitas for people to trust him or her?

show 1 reply