Signing messages
Digital signing is a way to ensure the authenticity and integrity of a message. When you sign an email in Private.Ki, you are appending a cryptographic signature generated with your private PGP key.
Please don't confuse this with email signatures. Here, we're talking about PGP signatures.
Signing of a message allows recipients to verify that the message was indeed from you and not altered in any way.
You can sign encrypted and non-encrypted messages.
Signing is easy, and you don't need to worry about key exchange or anything else, even when sending a message to somebody outside of Private.Ki. As your private PGP key is used for signing, all you have to do is click Sign at the bottom of the compose window:
For internal messages (to Private.Ki users), signing is activated by default and can't be turned off.
The recipient will see that you have sent him a signed message with a valid signature:
Like this, the recipient can be 100% sure that this message is coming from your account and has not been altered during transmission.
If the external recipient to whom you're sending the message is using an email software that supports PGP, he will be able to verify your PGP signature.
If you send a signed message to an external user who does not use PGP, he is still able to see the message. He just won't be able to verify the signature easily. He'll see the message with an attachment that's not human-readable:
The content of the attachment looks like this:
It can only be read and verified with PGP software.