When exporting OpenPGP certificates, regardless of where, we should check if certifications are done and if so if they are exportable and offer the user an easy option to do that now.
I know the user will most likely not check the fingerprints in that case but if there was believable contact with others I think that is fine. A bit TOFU style.