The Autocrypt standard has been developed to provide automatic E-Mail encryption. This is done as follows:
Each E-Mail sent includes the public key of the sender in the E-Mail header. This key will be imported automatically or manually by the recipient.
Autocrypt has the following limitiations:
There is no check for automatically imported keys to see whether they are real or fake.
For this reason, an automatically imported key is not used for verifying the sender's signature.
To manage Autocrypt keys and verify them later, the following options are available:
Parent topic: Encrypting Data with Guard