Hi Malte! Am 20.11.2015 11:26, schrieb Malte: > Hi, > > very nice! > > Two questions/remarks, though: > > On Thursday 19 November 2015 22:37 Jan Suhr wrote: >> The firmware and hardware of Nitrokey Storage have already been >> verified >> by Cure59, a professional third-party security auditor. > > How do you deal with the findings of the audit?
All serious findings are fixed already. Look for the "Note" at the end of each issue description. > (https://cure53.de/pentest-report_nitrokey.pdf and > https://cure53.de/pentest-report_nitrokey-hardware.pdf, for the > inclinded reader. And yes, it is > cure53.) > > >> Nitrokey is made entirely in Germany […] > > Can we _please_, for the love of all that is dear to us, stop > advertising with > nation-states as quality property? It might sell more sticks, but it > fosters a > sense of trust where there must be none. This can be a hard requirement for enterprises and government institutions. So it makes sense to inform about it. Whether this matters to personal users is up to each individual decision. Regards, Jan > > Sincerely, > > Malte > > _______________________________________________ > Gnupg-users mailing list > Gnupg-users@gnupg.org > http://lists.gnupg.org/mailman/listinfo/gnupg-users _______________________________________________ Gnupg-users mailing list Gnupg-users@gnupg.org http://lists.gnupg.org/mailman/listinfo/gnupg-users