I doubt that it will make it into rfc4880bis.  I also see no reason for
it.  Passphrases must die.

I fact OpenPGP is mostly about public key encryption and thus we don't
use passphrases for its main tasks.  Passphrases can be used to protect
a private key but that is questionable because if you box is already
compromised the passphrase does not help much.  The other use of
passphrases is symmetric-only encryption (command -c) but in most use cases
the passphrase comes from another application or a database and is not
entered manually.  In this case I consider it better to use --s2k-mode=0
along with a full entropy passphrase instead of relying on passphrase
mangling algorithms - they are designed for manual interaction and not
for large scale use with thousands of messages.

For disk encryption it is better to use a token than a secure passphrase
most humans can't remember.



