Instead of using the keyserver we would host the keys ourselves. https://wiki.gnupg.org/WKD * We'd need to add a "foobar@msys2.org" UID to our packager keys * All packager keys would need to be re-signed with the master keys (to verify the new UID) * We'd need to provide a https://openpgpkey.msys2.org/.well-known/... hosting the keys statically Background: https://bugs.archlinux.org/task/63171