Consider what would go into signing outgoing attachments & verifying the signatures. Mostly it's a UX problem. I think we're already signing encrypted attachments, at least. So we could add verification, conceivably. _Originally posted by @tomholub in https://github.com/FlowCrypt/flowcrypt-browser/pull/4144#discussion_r757096244_