At one point in this essay, Matt suggests that every successful end-to-end encryption scheme has employed transparent (or "translucent") key management. What he's referring to is the idea behind, say, OTR: two people can use it without the key handshake required by PGP. Matt is wrong about this. He's being victimized by a pernicious fallacy. It certainly appears that the most "successful" cryptosystems have transpare…
>They do indeed have an advantage in deployability! Deployability is worth more than might be immediately obvious. The question of deployment is directly related to the business of availability . If 99% of people used a crypto system that provided no real security beyond thwarting a global adversary, which also had the option for further measures to confirm identity when necessary, we would be in a much better positi…
You can however get them to consider what they put in there by explaining "email is like a postcard; everyone who touches it can read it".