- If the signing key is replaced too fast (within the same second) the resolution of OpenPGP timestamps is not good enough to identify the sequence of certifications - which might to the selection of the wrong signing key.