Page MenuHome GnuPG
Feed Advanced Search

Jan 22 2026

timegrid added a watcher for kleopatra: timegrid.
Jan 22 2026, 10:02 AM

Jan 21 2026

timegrid added a comment to T6632: Okular: Highlight / preselect "nonRepudiation" certificates for qualified signatures.

I also tested to add the qual flag to the root cert in the global trusted.txt, as using qualified.txt is considered legacy, but still the same behavior

Jan 21 2026, 2:02 PM · test on hold, gpd5x, okular
timegrid added a comment to T6732: Visual representation of signature is a bit ugly.

The first time Okular was included is gpg4win-4.2.0:

Jan 21 2026, 1:57 PM · needs discussion, gpd5x, okular
timegrid added a comment to T6632: Okular: Highlight / preselect "nonRepudiation" certificates for qualified signatures.

See here for how it should look like:

Jan 21 2026, 1:33 PM · test on hold, gpd5x, okular
timegrid added a comment to T6632: Okular: Highlight / preselect "nonRepudiation" certificates for qualified signatures.

I see. I added the root cert to C:\ProgramData\GNU\etc\gnupg\qualified.txt and the usage of the signing certs does include a qualified signature in Kleopatra now. Still I don't see any highlight/filter in Okular:

Jan 21 2026, 12:46 PM · test on hold, gpd5x, okular
timegrid added a comment to T8048: Keyboxd: S/MIME certificate is imported on ldap search.

The "ca" root cert is not on the ldap, if that matters

Jan 21 2026, 10:23 AM · keyboxd, Bug Report, gnupg26, S/MIME, LDAP, gpd5x
timegrid renamed T8048: Keyboxd: S/MIME certificate is imported on ldap search from GnuPG: S/MIME certificate is imported on ldap search to Keyboxd: S/MIME certificate is imported on ldap search.
Jan 21 2026, 10:14 AM · keyboxd, Bug Report, gnupg26, S/MIME, LDAP, gpd5x
timegrid added a comment to T8048: Keyboxd: S/MIME certificate is imported on ldap search.

some other certificates, but I guess those are from other tests

Jan 21 2026, 10:08 AM · keyboxd, Bug Report, gnupg26, S/MIME, LDAP, gpd5x
timegrid added a project to T8048: Keyboxd: S/MIME certificate is imported on ldap search: Bug Report.
Jan 21 2026, 10:00 AM · keyboxd, Bug Report, gnupg26, S/MIME, LDAP, gpd5x
timegrid renamed T8048: Keyboxd: S/MIME certificate is imported on ldap search from Kleopatra: S/MIME certificate is imported on ldap search to GnuPG: S/MIME certificate is imported on ldap search.
Jan 21 2026, 10:00 AM · keyboxd, Bug Report, gnupg26, S/MIME, LDAP, gpd5x
timegrid added a comment to T8048: Keyboxd: S/MIME certificate is imported on ldap search.

It also happens on CLI:

Jan 21 2026, 9:59 AM · keyboxd, Bug Report, gnupg26, S/MIME, LDAP, gpd5x

Jan 20 2026

timegrid moved T7429: Kleopatra: Importing certificate from Verification result dialog doesn't correctly re-verify the signature from Done to gpd-5.0.0 on the gpd5x board.
Jan 20 2026, 3:33 PM · gpd5x (gpd-5.0.0), kleopatra, Bug Report
timegrid added a comment to T8048: Keyboxd: S/MIME certificate is imported on ldap search.
  • gpg4win 5.0.0 @ win11
Jan 20 2026, 2:59 PM · keyboxd, Bug Report, gnupg26, S/MIME, LDAP, gpd5x
timegrid added a comment to T8048: Keyboxd: S/MIME certificate is imported on ldap search.

Note: This does not happen on vsd-3.3.4

Jan 20 2026, 2:37 PM · keyboxd, Bug Report, gnupg26, S/MIME, LDAP, gpd5x
timegrid created T8048: Keyboxd: S/MIME certificate is imported on ldap search.
Jan 20 2026, 1:56 PM · keyboxd, Bug Report, gnupg26, S/MIME, LDAP, gpd5x

Jan 19 2026

timegrid added a comment to T8042: Kleopatra: Add expired/revoked information to ldap search results.

gpgme.log (vsd 3.3.4):

Jan 19 2026, 4:02 PM · gpd5x (gpd-5.0.2), vsd34, Feature Request, LDAP, kleopatra
timegrid added a comment to T8039: NSIS: Preselection of installed components on reinstall only works with browser integration installed.

I wonder where the information of the previously installed components comes from, if not from the MementoSection_SEC_kleopatra fields.

Jan 19 2026, 2:03 PM · gpd5x (gpd-5.0.2), Bug Report, Installer
timegrid added a comment to T8038: NSIS: Updating line omitted if browser integration is installed.

I searched the whole registry and found, that if browser integration is installed, this key still lives in WOW6432Node: Computer\HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Gpg4win

Jan 19 2026, 1:59 PM · gpd5x (gpd-5.0.2), Bug Report, Installer
timegrid added a comment to T8039: NSIS: Preselection of installed components on reinstall only works with browser integration installed.

Oh, surpisingly it's the other way around: if the information is given in the registry key, all components are preselected. If the key is missing (browser integration installed), only the installed components are preselected. I wonder where the information of the previously installed components comes from, if not from the MementoSection_SEC_kleopatra fields.

Jan 19 2026, 1:55 PM · gpd5x (gpd-5.0.2), Bug Report, Installer
timegrid added a comment to T8042: Kleopatra: Add expired/revoked information to ldap search results.

Another possibility would be to just add a revoked column (expiration date is already shown) to keep closer to the ldap schema.

Jan 19 2026, 1:31 PM · gpd5x (gpd-5.0.2), vsd34, Feature Request, LDAP, kleopatra
timegrid created T8042: Kleopatra: Add expired/revoked information to ldap search results.
Jan 19 2026, 12:04 PM · gpd5x (gpd-5.0.2), vsd34, Feature Request, LDAP, kleopatra
timegrid added a comment to T8039: NSIS: Preselection of installed components on reinstall only works with browser integration installed.

Without browser integrations installed, the preselection works fine though.
Probably this happens, because the info in the registry is missing as soon as browser integration is installed, see T8038: NSIS: Updating line omitted if browser integration is installed

Jan 19 2026, 11:30 AM · gpd5x (gpd-5.0.2), Bug Report, Installer
timegrid added a comment to T8038: NSIS: Updating line omitted if browser integration is installed.

should properly uninstall the existing installation.

Jan 19 2026, 11:28 AM · gpd5x (gpd-5.0.2), Bug Report, Installer

Jan 16 2026

timegrid added a project to T8039: NSIS: Preselection of installed components on reinstall only works with browser integration installed: Bug Report.
Jan 16 2026, 3:09 PM · gpd5x (gpd-5.0.2), Bug Report, Installer
timegrid added a comment to T8038: NSIS: Updating line omitted if browser integration is installed.

see also T8039: NSIS: Preselection of installed components on reinstall only works with browser integration installed

Jan 16 2026, 3:09 PM · gpd5x (gpd-5.0.2), Bug Report, Installer
timegrid created T8039: NSIS: Preselection of installed components on reinstall only works with browser integration installed.
Jan 16 2026, 3:09 PM · gpd5x (gpd-5.0.2), Bug Report, Installer
timegrid changed Version from gpg4win-5.0.0 to gpg4win-5.0.0 @ win11 on T8038: NSIS: Updating line omitted if browser integration is installed.
Jan 16 2026, 2:58 PM · gpd5x (gpd-5.0.2), Bug Report, Installer
timegrid renamed T8038: NSIS: Updating line omitted if browser integration is installed from NSIS: Updating line omitted if browser extensions are installed to NSIS: Updating line omitted if browser integration is installed.
Jan 16 2026, 2:56 PM · gpd5x (gpd-5.0.2), Bug Report, Installer
timegrid created T8038: NSIS: Updating line omitted if browser integration is installed.
Jan 16 2026, 2:54 PM · gpd5x (gpd-5.0.2), Bug Report, Installer

Jan 15 2026

timegrid added a comment to T6632: Okular: Highlight / preselect "nonRepudiation" certificates for qualified signatures.

I created a bunch of smime certs (via OpenSSL) and imported them in gpg4win-5.0.0 @ win11:

  • For each keyusage
    • keyEncipherment, dataEncipherment
    • digitalSignature
    • nonRepudiation
    • digitalSignature, nonRepudiation
  • Alice's certs with different names, Bob's certs with same name for each key
Jan 15 2026, 4:26 PM · test on hold, gpd5x, okular
timegrid added a comment to T7008: Kleopatra: New tabs in certficate list should use same column layout as current tab.

Is this is good enough or should the import cert list also inherit the layout (with or without additional columns) from the currently active tab?

Jan 15 2026, 1:16 PM · vsd34, gpd5x, kleopatra
timegrid closed T7434: Kleopatra: Initial keylisting hangs for ~60 seconds (gpg-agent: Socket ...S.gpg-agent cannot be bound) as Resolved.

Looks good to me on gpg4win-5.0.0 @ win11. Tested with 20 starts of each combination:

  • with / without keyboxd
  • quitting kleopatra / killing all processes
Jan 15 2026, 1:06 PM · gpd5x (gpd-5.0.0), gnupg, kleopatra
timegrid closed T4581: Kleopatra stuck in loading the certificate cache as Resolved.

Looks good to me on gpg4win-5.0.0 @ win11. Tested with 20 starts of each combination:

  • with / without keyboxd
  • quitting kleopatra / killing all processes
Jan 15 2026, 1:06 PM · gpd5x (gpd-5.0.0), gpg4win, kleopatra, Bug Report
timegrid closed T6623: Kleopatra hangs "Loading certificate cache" on Windows 10 as Resolved.

Looks good to me on gpg4win-5.0.0 @ win11. Tested with 20 starts of each combination:

  • with / without keyboxd
  • quitting kleopatra / killing all processes
Jan 15 2026, 1:05 PM · gpd5x (gpd-5.0.0), kleopatra
timegrid added a comment to T7008: Kleopatra: New tabs in certficate list should use same column layout as current tab.

Another correction: I'm quite sure, that changing the width worked for a while (until i created that new tab), but I can't reproduce this anymore (even after deleting kleopatrastaterc). Now the import list again seems to have it's own memory (changing width in the import list will be kept on the next import)

Jan 15 2026, 12:43 PM · vsd34, gpd5x, kleopatra
timegrid added a comment to T7008: Kleopatra: New tabs in certficate list should use same column layout as current tab.

Correction: On import, the width of the last created tab (not the current one) will be used, but additional columns won't be added.

Jan 15 2026, 12:29 PM · vsd34, gpd5x, kleopatra

Jan 14 2026

timegrid added a comment to T7008: Kleopatra: New tabs in certficate list should use same column layout as current tab.

In gpg4win-5.0.0-beta479 @ win11

  • I can confirm, that a new tab will inherit the layout from the currently active tab
  • On import
    • The layout of the main tab is kept
    • The import cert table has it's own layout though (default columns/widths) - should this be different? see next comment
Jan 14 2026, 3:15 PM · vsd34, gpd5x, kleopatra
timegrid triaged T8034: Kleopatra: Adjust decrypt/verify clipboard dialog to look similiar to the decrypt/verify files dialog as Low priority.
Jan 14 2026, 2:50 PM · gpd5x, kleopatra
timegrid changed the status of T7455: Improved Sign/Encrypt/Decrypt/Verify from clipboard from Testing to Open.

Mostly looks good to me on gpg4win-5.0.0-beta479 @ win11.

Jan 14 2026, 12:02 PM · gpd5x (gpd-5.0.2), kleopatra
timegrid moved T7429: Kleopatra: Importing certificate from Verification result dialog doesn't correctly re-verify the signature from QA to Done on the gpd5x board.

Looks good to me on gpg4win-5.0.0-beta479 @ win11:

Jan 14 2026, 11:05 AM · gpd5x (gpd-5.0.0), kleopatra, Bug Report
timegrid added a comment to T6732: Visual representation of signature is a bit ugly.

Was anything changed? What to test here?

Jan 14 2026, 10:44 AM · needs discussion, gpd5x, okular

Jan 13 2026

timegrid added a comment to T7285: Okular: Improvement of error messages regarding signatures.

Thanks, looks good to me:

  • Saving to c:\
  • Saving with removed signing key
Jan 13 2026, 3:30 PM · test on hold, gpd5x, okular
timegrid changed the status of T5707: Kleopatra: Use windows registry additionally to config files from Testing to Open.

On gpg4win-5.0.0-beta479 @ win11 the registry settings are not read due to the organization name not set.

Jan 13 2026, 3:04 PM · gpd5x, gpg4win, kleopatra
timegrid updated the task description for T8029: IPC error on batch import of secret kyber cert.
Jan 13 2026, 2:21 PM · gnupg26, Bug Report, gpd5x, kleopatra
timegrid added a comment to T8029: IPC error on batch import of secret kyber cert.

Importing the same files via cli does work:

Jan 13 2026, 2:20 PM · gnupg26, Bug Report, gpd5x, kleopatra
timegrid updated the task description for T8029: IPC error on batch import of secret kyber cert.
Jan 13 2026, 2:09 PM · gnupg26, Bug Report, gpd5x, kleopatra
timegrid added a comment to T8029: IPC error on batch import of secret kyber cert.

Screenshots of different imports:

Jan 13 2026, 2:03 PM · gnupg26, Bug Report, gpd5x, kleopatra
timegrid added a comment to T8029: IPC error on batch import of secret kyber cert.

gpgme.log (import of kyber team key with signing key):

Jan 13 2026, 1:53 PM · gnupg26, Bug Report, gpd5x, kleopatra
timegrid added a comment to T8029: IPC error on batch import of secret kyber cert.

gpgme.log (import of normal non team key kyber cert):

Jan 13 2026, 1:44 PM · gnupg26, Bug Report, gpd5x, kleopatra
timegrid raised the priority of T8029: IPC error on batch import of secret kyber cert from Normal to High.
Jan 13 2026, 1:32 PM · gnupg26, Bug Report, gpd5x, kleopatra
timegrid triaged T8030: Kleopatra: Add hint to filename of secret team key exports with signing key as Normal priority.
Jan 13 2026, 1:03 PM · gpd5x (gpd-5.0.2), Feature Request, kleopatra
timegrid added a project to T8029: IPC error on batch import of secret kyber cert: Bug Report.
Jan 13 2026, 12:54 PM · gnupg26, Bug Report, gpd5x, kleopatra
timegrid triaged T8029: IPC error on batch import of secret kyber cert as Normal priority.
Jan 13 2026, 12:46 PM · gnupg26, Bug Report, gpd5x, kleopatra

Jan 9 2026

timegrid added a comment to T7866: Allow separate LDAP keyserver for uploading.

The behaviour might have changed a bit because of the ldap: prefix i use now, or i have missed this case the last time:
Given some cert on the "download" server, I can find it, if dirmngr.conf contains only the "download" server, or if the "download" server is listed first:

Jan 9 2026, 2:17 PM · gnupg22, vsd34, LDAP, Feature Request, gnupg26
timegrid closed T7893: GnuPG: Decryption fails if the pinentry dialog for the first tried recipient is canceled as Resolved.

Looks good to me on gpg4win-5.0.0-beta479 @ win11:

Jan 9 2026, 1:18 PM · gnupg26, gnupg
timegrid closed T7874: Kleopatra: GnuPG System configuration not translated as Resolved.

Looks good to me on gpg4win-5.0.0-beta479 @ win11:

Jan 9 2026, 12:05 PM · gpd5x (gpd-5.0.0), i18n, kleopatra
timegrid moved T7971: Kleopatra: Always use gpgme to find the GnuPG binaries from WIP to Done on the gpd5x board.

I assume, that testing the functionality is the only thing I can do here.

Jan 9 2026, 11:30 AM · gpd5x (gpd-5.0.0), vsd34, kleopatra
timegrid moved T7567: Kleopatra: warning regarding attribute "_X_" from WIP to Done on the gpd5x board.

Looks good to me on gpg4win-5.0.0-beta479 @ win11

Jan 9 2026, 11:06 AM · gpd5x (gpd-5.0.0), kleopatra
timegrid updated the task description for T7285: Okular: Improvement of error messages regarding signatures.
Jan 9 2026, 10:49 AM · test on hold, gpd5x, okular
timegrid added a project to T7285: Okular: Improvement of error messages regarding signatures: test on hold.
Jan 9 2026, 10:48 AM · test on hold, gpd5x, okular
timegrid added a comment to T7773: Add reencrypt mail option to copy only encrypted mails .

Tested with gpg4win-5.0.0-beta479 @ win11

Jan 9 2026, 10:25 AM · gpd5x (gpd-5.0.0), Feature Request, gpgol2
timegrid closed T7773: Add reencrypt mail option to copy only encrypted mails , a subtask of T7507: Allow reencrypting email and email folders, as Resolved.
Jan 9 2026, 10:21 AM · gpgol2
timegrid closed T7773: Add reencrypt mail option to copy only encrypted mails as Resolved.
Jan 9 2026, 10:21 AM · gpd5x (gpd-5.0.0), Feature Request, gpgol2
timegrid moved T7773: Add reencrypt mail option to copy only encrypted mails from QA to Done on the gpgol2 board.
Jan 9 2026, 10:21 AM · gpd5x (gpd-5.0.0), Feature Request, gpgol2
timegrid moved T7773: Add reencrypt mail option to copy only encrypted mails from QA to Done on the gpd5x board.

@tfry tested this, and it seems fine.

Jan 9 2026, 10:21 AM · gpd5x (gpd-5.0.0), Feature Request, gpgol2

Jan 8 2026

timegrid moved T7717: Location of qt-application config files from WIP to Done on the gpd5x board.

Looks good to me on gpg4win-5.0.0-beta479 @ win11.

Jan 8 2026, 12:15 PM · gpd5x (gpd-5.0.0), Windows, kleopatra, vsd34, okular
timegrid added a comment to T8015: Kleopatra: Status in certificate list not updated after import.

Ebo was also able to reproduce it like this:

Jan 8 2026, 11:30 AM · gpd5x (gpd-5.0.2), kleopatra

Jan 7 2026

timegrid moved T7045: Kleopatra: Use "SCD DEVINFO --watch" also on Windows from QA to Done on the gpd5x board.

Looks good to me on gpg4win-5.0.0-beta479 @ win11.
Both without and with DeviceInfoWatcher (via configuration as shown in https://dev.gnupg.org/T7045#186162 ):

  • Removal of smart card -> smart card is removed in smart card view
  • Insertion of smart card + gpg-card -> smart card is added in smart card view
Jan 7 2026, 1:27 PM · gpd5x (gpd-5.0.0), kleopatra
timegrid closed T6688: Kleopatra GPGME: Reported assert on exit, a subtask of T7045: Kleopatra: Use "SCD DEVINFO --watch" also on Windows, as Resolved.
Jan 7 2026, 1:18 PM · gpd5x (gpd-5.0.0), kleopatra
timegrid closed T6688: Kleopatra GPGME: Reported assert on exit as Resolved.

I'm not sure, how to reproduce this. On gpg4win-5.0.0-beta479 @ win11 I quit Kleopatra with a smartcard inserted, the process exits with code 0, so it looks fine and I'm setting this to resolved.

Jan 7 2026, 1:18 PM · gpd5x (gpd-5.0.0), gpgme, kleopatra
timegrid changed the status of T6793: Cleanup temporary files / dirs with decrypted content, a subtask of T6199: Kleopatra: MIME viewer support, from Testing to Open.
Jan 7 2026, 12:57 PM · mimetreeparser, Restricted Project, kleopatra
timegrid changed the status of T6793: Cleanup temporary files / dirs with decrypted content from Testing to Open.

Does not work on gpg4win-5.0.0-beta479 @ win11:

  • Open encrypted mail and open attachments in outlook + reboot
    • All temporary files in "C:\Users\g10\AppData\Local\Microsoft\Windows\INetCache\Content.Outlook\ODXPL3A9" are still present after reboot (files with 002 ending additionally opened)
    • Temporary files are still present after opening and closing Kleopatra and Outlook
  • Open encrypted attachment in kleopatra/mailviewer (via .eml file) + reboot
    • All temporary files in "C:\Users\g10\AppData\Local\Temp\kleopatra.XXXXXX" are still present after reboot (one folder per opened file)
    • Temporary files are still present after opening and closing Kleopatra
  • Decrypt archive in kleopatra + reboot during the success dialog with the save button
    • Temporary folder "C:\Users\g10\AppData\Local\Temp\kleopatra.XXXXXX" with extracted tarball still present after reboot
    • Temporary files are still present after opening and closing Kleopatra
Jan 7 2026, 12:57 PM · gpd5x, kleopatra
timegrid added a comment to T8015: Kleopatra: Status in certificate list not updated after import.

to make sure we talk about the same thing, it's about the status column:

Jan 7 2026, 11:51 AM · gpd5x (gpd-5.0.2), kleopatra
timegrid added a comment to T8015: Kleopatra: Status in certificate list not updated after import.

The imported cert was berta`s in this case.

Jan 7 2026, 11:46 AM · gpd5x (gpd-5.0.2), kleopatra
timegrid added a comment to T8017: Okular: Hang on signature with smime cert and distrusted root.
>gpgsm -v --sign --local-user "Edward Tester" test.pdf > test.gpg.p7s
gpgsm: enabled compatibility flags:
gpgsm: looking up issuer from the Dirmngr cache
gpgsm: number of matching certificates: 0
gpgsm: dirmngr cache-only key lookup failed: No data
gpgsm: issuer certificate {04A0A7E932B29D43A9B6673139AF52C0A5FC467BF5A64D044D1AC33613ABBB73CA532569F5779999114C0118CD66FDF6E92B1B0EEE2A4D5A815DA7FD892DDDE9C1} not found using authorityKeyIdentifier
gpgsm: looking up issuer from the Dirmngr cache
gpgsm: number of matching certificates: 0
gpgsm: dirmngr cache-only key lookup failed: No data
gpgsm: certificate is good
gpgsm: root certificate is not marked trusted
gpgsm: fingerprint=D4:EC:A6:B4:69:AB:B5:44:08:27:CB:3F:C7:D7:91:08:3C:10:27:DB
gpgsm: DBG: BEGIN Certificate 'issuer':
gpgsm: DBG:      serial: 01
gpgsm: DBG:   notBefore: 2020-03-26 19:41:01
gpgsm: DBG:    notAfter: 2063-04-05 17:00:00
gpgsm: DBG:      issuer: CN=Root-CA 2020,OU=GnuPG.com,O=g10 Code GmbH,C=DE
gpgsm: DBG:     subject: CN=Root-CA 2020,OU=GnuPG.com,O=g10 Code GmbH,C=DE
gpgsm: DBG:   hash algo: 1.2.840.113549.1.1.11
gpgsm: DBG:   SHA1 Fingerprint: D4:EC:A6:B4:69:AB:B5:44:08:27:CB:3F:C7:D7:91:08:3C:10:27:DB
gpgsm: DBG: END Certificate
gpgsm: after checking the fingerprint, you may want to add it manually to the list of trusted certificates.
gpgsm: validation model used: shell
gpgsm: can't sign using 'Edward Tester': Not trusted
[GNUPG:] FAILURE gpgsm-exit 50331649
Jan 7 2026, 9:33 AM · Bug Report, S/MIME, gpd5x, okular

Jan 6 2026

timegrid added a comment to T8015: Kleopatra: Status in certificate list not updated after import.

Other observations:

  • after removing the smartcard reader again it's still not reproducible
  • after win restart it's not always reproducible
  • best chances to reproduce by killing all gpg related processes and deleting gnupghome and Gpg4Win folders first, then import
Jan 6 2026, 5:05 PM · gpd5x (gpd-5.0.2), kleopatra
timegrid added a comment to T8015: Kleopatra: Status in certificate list not updated after import.

after attaching a smartcard reader with a smartcard, i can't reproduce this issue anymore

Jan 6 2026, 4:50 PM · gpd5x (gpd-5.0.2), kleopatra
timegrid added a comment to T8015: Kleopatra: Status in certificate list not updated after import.

Also: What happens if you cancel the ownership question and then change the owner trust of the key on the command line?

Jan 6 2026, 4:47 PM · gpd5x (gpd-5.0.2), kleopatra
timegrid added a comment to T8015: Kleopatra: Status in certificate list not updated after import.

Interesting. I also wasn't able to reproduce this anymore, although I even created a new VM to make sure this is reproducible in a clean setup (and it was reproducible every time).
After restart of windows, it is reproducible again. This is the debugview output for an import without status update:

Jan 6 2026, 4:42 PM · gpd5x (gpd-5.0.2), kleopatra
timegrid moved T7272: Kleopatra: Look up missing OpenPGP certificates for card keys from QA to Done on the gpd5x board.

Looks good to me on gpg4win-5.0.0-beta479 @ win11.

Jan 6 2026, 3:55 PM · gpd5x (gpd-5.0.0), LDAP, kleopatra
timegrid moved T7937: Kleopatra: Screenreaders stay silent when smartcard window is opened from QA to Done on the gpd5x board.

Done

  • progress/busy indicator shown (probably also read, but loading was too fast, so it skipped the text)
alt+m
Manage Smart Cards - Kleopatra  window
Loading smart cards...
tab control
OpenPGP - 0005 00009D58  tab  Alt+  O
Jan 6 2026, 3:02 PM · gpd5x (gpd-5.0.0), a11y, kleopatra
timegrid added a comment to T8017: Okular: Hang on signature with smime cert and distrusted root.

Maybe it would be better to just not offer S/MIME certs with distrusted root cert?

Jan 6 2026, 2:42 PM · Bug Report, S/MIME, gpd5x, okular
timegrid moved T7285: Okular: Improvement of error messages regarding signatures from QA to WIP on the gpd5x board.

I tried to get any error response but found those issues instead:

Jan 6 2026, 2:33 PM · test on hold, gpd5x, okular
timegrid created T8018: Okular: No error on signature with wrong passphrase.
Jan 6 2026, 2:28 PM · test on hold, Bug Report, gpd5x, okular
timegrid added a comment to T8017: Okular: Hang on signature with smime cert and distrusted root.

If all processes are killed before okular is opened, i get an error on "finish signing":


Jan 6 2026, 2:15 PM · Bug Report, S/MIME, gpd5x, okular
timegrid added a comment to T8017: Okular: Hang on signature with smime cert and distrusted root.

gpgsm.log (debug-all, whole process of signing)

Jan 6 2026, 2:11 PM · Bug Report, S/MIME, gpd5x, okular
timegrid created T8017: Okular: Hang on signature with smime cert and distrusted root.
Jan 6 2026, 2:03 PM · Bug Report, S/MIME, gpd5x, okular
timegrid moved T6731: Default save dir in okular/windows is wrong from QA to Done on the gpd5x board.

Looks good to me on gpg4win-5.0.0-beta479 @ win11. The default path is now the same as the path of the opened file:

Jan 6 2026, 1:40 PM · gpd5x (gpd-5.0.0), okular
timegrid closed T1825: Add a re-encrypt to additional key as Resolved.
Jan 6 2026, 12:57 PM · gpd5x (gpd-5.0.0), gnupg26, Feature Request
timegrid created T8015: Kleopatra: Status in certificate list not updated after import.
Jan 6 2026, 12:37 PM · gpd5x (gpd-5.0.2), kleopatra
timegrid moved T1825: Add a re-encrypt to additional key from QA to Done on the gnupg26 board.
Jan 6 2026, 12:28 PM · gpd5x (gpd-5.0.0), gnupg26, Feature Request
timegrid moved T1825: Add a re-encrypt to additional key from QA to Done on the gpd5x board.

Looks good to me on gpg4win-5.0.0-beta479 @ win11:

  • gpg --show-only-session-key --decrypt FILE shows only the session key
  • gpg --add-recipients -r UID1 FILE adds recipients (tested with one or more uids)
  • gpg --change-recipients -r UID FILE changes the recipients (tested with one or more uids)
Jan 6 2026, 12:28 PM · gpd5x (gpd-5.0.0), gnupg26, Feature Request
timegrid moved T7983: gpg: the validity of a secret key is changed by making a certification with it from QA to Done on the gnupg26 board.
Jan 6 2026, 12:08 PM · gpd5x (gpd-5.0.0), keyboxd, Bug Report, gnupg26
timegrid moved T7983: gpg: the validity of a secret key is changed by making a certification with it from QA to Done on the gpd5x board.

Looks good to me on gpg4win-5.0.0-beta479 @ win11.
I can't reproduce ebo's nor pl13's issue.

Jan 6 2026, 12:07 PM · gpd5x (gpd-5.0.0), keyboxd, Bug Report, gnupg26

Jan 5 2026

timegrid created T8012: Missing error on first key search without keyserver.
Jan 5 2026, 1:37 PM · dirmngr, Bug Report, gnupg26
timegrid moved T7730: gpg: retrieve a certificate from an LDAP server before sending it to the LDAP server from QA to Done on the gnupg26 board.
Jan 5 2026, 12:54 PM · gpd5x (gpd-5.0.0), gnupg22 (gnupg-2.2.52), gnupg26, Feature Request
timegrid moved T7730: gpg: retrieve a certificate from an LDAP server before sending it to the LDAP server from WIP to Done on the gpd5x board.

The problem was the keyserver configuration, which does not include a scheme (ldap:):

keyserver ldap.gnupg.test:389:uid=LordPrivySeal,ou=GnuPG Users,dc=gnupg,dc=test:pass:dc=gnupg,dc=test:
Jan 5 2026, 12:53 PM · gpd5x (gpd-5.0.0), gnupg22 (gnupg-2.2.52), gnupg26, Feature Request

Jan 2 2026

timegrid moved T8008: GpgEX: UI server already running from Backlog to Done on the gpd5x board.
Jan 2 2026, 2:22 PM · gpd5x (gpd-5.0.0), kleopatra, gpgex
timegrid closed T8008: GpgEX: UI server already running, a subtask of T7528: Make it possible to run Kleopatra VSD and Kleopatra GPD in parallel, as Resolved.
Jan 2 2026, 2:21 PM · vsd34, test on hold, gpd5x, kleopatra
timegrid closed T8008: GpgEX: UI server already running as Resolved.

The issue is resolved in gpg4win-5.0.0-beta479 @ win11:

  • no error for opening .eml files
  • no error for starting kleopatra while running (also not started twice anymore)
Jan 2 2026, 2:21 PM · gpd5x (gpd-5.0.0), kleopatra, gpgex