We have GOT TO make things simpler

Of course we should.  I'm happy to do that when the person with whom I
want to communicate privately is willing to do the same.  Most aren't,
and I am unwilling to let the perfect be the enemy of the good.

> And it makes sense to do things this way if you want to be secure.
> And before you point me to how PM stores your private keys (I've read it),
> remember that all of that salting and hash/password storage is done using
> business logic they developed, which means anytime there's an update,
> hidden or announced, you are running a risk of a backdoor being introduced.
> Can you even audit that code?

Personally, I am not capable of auditing code, including that of GnuPG.
 It is unrealistic to think most users, even most power users, have the
time and ability to audit the code of their security software.

My threat model is not overly demanding.  Mainly I want to avoid getting
targeted pharma ads or being denied insurance if I discuss a medical
issue in an email.  I'd prefer that Google not be able to surmise my
income sources and net worth based on information I share with family
members.  Were I worried about being targeted by NSA, law enforcement or
a civil court order, I'd be a lot more demanding of my correspondents
and myself.

I have used PGP since at least version 2.6.x.  I can do OpenPGP via
Thunderbird/Enigmail, mutt, GPGShell, Geany, Kleopatra or the command
line and don't find any of them to be particularly daunting.  What I
haven't been able to do is convince many people to do the same.


