PGP-based 2FA is technically demanding but credential-stuffing-resistant. What buyers say about the setup and the daily-use experience.
Setup: 90 seconds for buyers with prior PGP experience; 10–15 minutes for first-time PGP users (most of which is GnuPG installation and initial keypair generation, not the platform-side enrollment itself). The PGP-for-beginners pinned guide on the sister r/onionarchive thread reduces the unfamiliar-PGP setup time materially. Daily use: 15–20 seconds added to each login flow (decrypt the 2FA code locally, paste, submit). Reviewers report this is meaningfully faster than authenticator-app TOTP and similar to hardware-token TOTP.
The high-value benefit reviewers consistently call out: a credential leak from any unrelated source does not result in account compromise on Nexus, because the attacker also needs the PGP private key. Aggregate rating of the PGP-2FA flow: 4.7/5 from buyers who enrolled it.