2014-02-26 UTC
# aaronpk this is nice: "When the keybase client requests maria's key from the keybase server, it does not simply trust the public key because it trusts the server.... Rather, the server replies with links to tweets, gists, etc. -- maria's public identity proofs. The keybase client does not trust that these are honest, so it scrapes them directly and makes sure they were signed by the same public key that the