On Wed, Oct 9, 2013 at 1:16 AM, David Woodhouse <dw...@infradead.org> wrote: > > You should probably be signing your tags. Even if your key isn't in the > strong set yet, at least they would consistently be signed with the > *same* key.
Agreed. Even an unvalidated key is better than no key, since it can be validated later, and even if never validated shows at least that multiple pull requests were generated by people who had access to that key.. Linus -- To unsubscribe from this list: send the line "unsubscribe linux-kernel" in the body of a message to majord...@vger.kernel.org More majordomo info at http://vger.kernel.org/majordomo-info.html Please read the FAQ at http://www.tux.org/lkml/