Evening all. I just noticed in another thread that some members suspect that my earlier security post was because I was my acccount(s) were hacked or compromised. That is not the case. Rather, it is a preventative security measure in case there are individuals that try to copy our lab. For example, we have seen cases where some individuals will try to register a similar email and use that to scam or solicit sales. An example: if my email was
100Pharma@countermail.com, someone may register the email address
1000Pharma@countermail.com. Then using that email, they can try to pose as the original lab and some unsuspecting members may confuse the two.
Our safety and security is in no way compromised, rather we were trying to put measures in place to further give confidence that our identity cannot be taken. We have always had both PGP keys, however many customers do not use PGP so I wanted everyone to be aware of how PGP can be used to verify identities. This is not a case of improving security in the sense that these measures have always been in place. The reason I posted was because I wanted members to be aware of what we have in place. The reason we have two PGP keys is the first one is associated with our Countermail account. In a case where Countermail as a email provider is compromised, or if they willingly give up information to LE - I have a second set of PGP keys that are on an encrypted drive. As a result, I am the only individual who has access to both private keys and can decrypt messages from both public keys at any and all times. Hopefully that clears up any confusion.
Furthermore, I would ask that the more astute members to realize the more subtle implications in my security posts and update posts. I am not going to say it explicitly because of possible lurking LE, but think of what implications an identifier such as public key decryption could be used for. If a lab were to shut down temporarily and re-open a few months, years down the line as the same lab or even under a different name, how could that lab operator be verified? If the meaning isn't clear, members with a history are welcome to PM me, but otherwise let's not discuss openly what exactly this explicitly means.
Again, please understand that my update posts are for the benefit of everyone and myself. Please do not take the subtle messages I am sending as a negative, if there's any misunderstanding, just PM me, I'll be happy to discuss it with you.