Key Verification Guide

How to safely verify my PGP key

πŸ” Key Verification Guide

Key security depends on proper verification. Never skip this step!

Why Verification Matters

  • Prevents man-in-the-middle attacks
  • Ensures you have the real key, not a malicious one
  • Builds a web of trust for future communications

Step-by-Step Verification

Step 1: Get the Fingerprint

First, note my key’s fingerprint: 4581 5E75 FD2C 35B5 A446 A72D C2CA 8AF9 69CE D75C

Step 2: Cross-Reference Multiple Channels

Visit at least 2-3 of these independent sources:

πŸ™ GitHub Profile

  1. Go to https://github.com/danrods
  2. Check my profile README
  3. Look for the PGP section
  4. Compare the fingerprint

🐦 Twitter/X

  1. Visit https://twitter.com/danxrods
  2. Look for pinned tweets
  3. Find the PGP fingerprint post
  4. Compare with the fingerprint above

πŸ” Keybase (Strongest Verification)

  1. Go to https://keybase.io/drodrigues
  2. View my cryptographic proofs
  3. Keybase cryptographically links my key to my identity

Step 3: In-Person or Phone Verification

For the highest security:

  • Meet me in person and I’ll confirm the fingerprint
  • Call me and I’ll read the fingerprint over the phone
  • Video call where I can show you the fingerprint

Red Flags 🚩

DO NOT TRUST the key if:

  • Fingerprints don’t match across platforms
  • Only one source has the fingerprint
  • The website seems suspicious or compromised
  • You get a different key from a keyserver

Verification Tools

Command Line Verification

# After importing, check the fingerprint
gpg --fingerprint danrodrigues114@gmail.com

# Should output:
4581 5E75 FD2C 35B5 A446 A72D C2CA 8AF9 69CE D75C

⚠️ Important Security Notice

Always verify the key fingerprint through multiple independent channels!

A compromised website could serve a malicious key. Cross-check this fingerprint:

4581 5E75 FD2C 35B5 A446 A72D C2CA 8AF9 69CE D75C

βœ… Verification Channels

Confirm this exact fingerprint appears on these independent platforms:

πŸ™

GitHub

Profile README
⏳ Checking...
🐦

Twitter

Pinned Tweet
⏳ Manual check required
πŸ’Ό

LinkedIn

About Section
⏳ Manual check required
πŸ”

Keybase

Cryptographic Proof
βœ… Cryptographically verified
πŸ“‹ How to Verify
  1. Visit each platform listed above independently
  2. Look for the fingerprint in the specified location
  3. Compare character by character - they must match exactly
  4. If any platform shows a different fingerprint, do not trust this key
  5. For ultimate security, verify the fingerprint in person or via phone

πŸ’‘ Pro Tip

Use the copy button below to easily compare fingerprints across platforms: