BACK TO HOME

NEXTGEN Widget Encrypt3 — when OpenPGP security matters.

by NextGen Widget Software



Keys and operations

These four topics sit on the Operations and Key store menus. They do not create the key. They look one up, watch its dates, print a fingerprint check, or show what the vault has recorded.

  1. Keyserver and WKD lookup
    Operations → Keyserver / WKD lookup. Lookup checks for a network connection first. If there is none, it stops and tells you.
    Otherwise it searches keys.openpgp.org, keyserver.ubuntu.com, and pgp.mit.edu. If you entered an email address, it also tries WKD. Import only after you have compared the fingerprint.
  2. Expiration dashboard
    Operations → Expiration dashboard. Filter by 30, 60, or 90 days, by expired, by never expires, by revoked, or show all. Each row shows the name and the Key ID (hex), so a key with no name is still identifiable.
    Extend selected needs the private-key passphrase. A revoked key cannot be extended. Expired rows are purple in the main grid; revoked rows are red.
  3. Key ceremony sheet
    Operations → Key ceremony sheet. Print the selected key, or print every key in a group.
    The sheet is for two people to compare the fingerprint on paper and tick Match. Printing does not mark the key verified. You set verified yourself after the check, from the grid or from Keys → Toggle trusted.
  4. Audit log
    Key store → Audit log. The vault keeps the newest 5,000 events, including failed sign-ins and watch-folder encrypts. Filter by person. Export CSV, JSON, or CEF. Clearing the failed-attempt line on the welcome bar does not remove these rows.