but the keys which sign commits must first be marked as trusted in the gpg keychain.
at the moment, changes are verified with `git pull --verify-signatures` in https://git.qcode.ch/nakamochi/sysupdates/src/commit/e856de67/update.sh#L40 which runs gpg-verify.
but the keys which sign commits must first be marked as trusted in the gpg keychain.
at the moment, changes are verified with
git pull --verify-signatures
in https://git.qcode.ch/nakamochi/sysupdates/src/commit/e856de67/update.sh#L40 which runs gpg-verify.but the keys which sign commits must first be marked as trusted in the gpg keychain.
moved to https://github.com/nakamochi/sysupdates/issues/4