On this page
Overview
GnuPG is a security toolchain centered on OpenPGP encryption, signatures, and public/private key management, with S/MIME, gpg-agent, smart-card, and related capabilities. The 2.5 series is stable, and 2.5.24 is a September 23, 2026 bug-fix-oriented release.
Features and best fit
Based on official documentation; not hands-on tested · Content checked:
Key features
Encrypt, decrypt, sign, and verify data with OpenPGP
The gpg CLI handles public-key encryption and digital signatures for files and messages and can be integrated into applications and automation.
Manage keys, agents, smart cards, and directory access
GnuPG combines public/private key management with gpg-agent, smart-card support, and access mechanisms for public-key directories.
Sources: [1]
Best fit
Fits software-release signing, secure mail, artifact verification, and key management
It is useful for CLI-driven signing and integrity workflows and for systems that need centrally managed OpenPGP or S/MIME keys.
Sources: [1]
Before adoption
The GitHub repository is a read-only mirror, not the contribution endpoint
The repository description states that maintainers do not track the GitHub mirror. Bugs and patches should follow the official GnuPG tracker and mailing-list process.
Sources: [1]
Official sources
- [1]GnuPG 2.5.24 source README(2026-10-04)
- [2]GnuPG 2.5.24 configure metadata(2026-10-04)
- [3]GnuPG 2.5.24 release announcement(2026-10-04)
- [4]GnuPG official download directory(2026-10-04)
- [5]GnuPG GPLv3 license(2026-10-04)
Supplemental curator note
GitHub is a mirror not tracked for contributions. Use the official tracker/mailing list, verify official distribution signatures, and avoid the EOL 2.4 branch.
Try it in 3 steps
- 1
Download the official GnuPG 2.5.24 source and signature
Use the official distribution rather than the GitHub mirror. Verify the signature with the official GnuPG release signing key before building.
curl -LO https://gnupg.org/ftp/gcrypt/gnupg/gnupg-2.5.24.tar.bz2 && curl -LO https://gnupg.org/ftp/gcrypt/gnupg/gnupg-2.5.24.tar.bz2.sig - 2
Extract the source and confirm the version
Confirm that the signature file is present and that the extracted release identifies itself as 2.5.24.
test -s gnupg-2.5.24.tar.bz2.sig && tar -xjf gnupg-2.5.24.tar.bz2 && cat gnupg-2.5.24/VERSION - 3
Inspect configure options without building
Check the release configure entry point without compiling dependencies or installing anything system-wide.
cd gnupg-2.5.24 && ./configure --help | head -n 40
Growth
Growth trends · Last 30 days
988 Stars
Trend data is still being collected.
Built with
Categories and tags
Categories
GitHub data
GitHub dataView detailed GitHub data
GitHub Topics
- openpgp
- Stars
- 988
- Forks
- 218
- Watchers
- 988
- Open issues
- 1
- Owner type
- Organization
- Primary language
- C
- License
- GPL-3.0-or-later
- Repository last updated
- Oct 1, 2026
Related information
Write a related articleShare a guide or use case for this OSS in Markdown. Articles are published after administrator approval.
Explore next
- Sherlock93,202 Stars
1 shared tag(s) · 1 shared category(s)
Check username candidates across more than 400 social networks with an OSINT CLI
Python - mkcert59,717 Stars
1 shared tag(s) · 1 shared category(s)
create a local CA and easily issue browser-trusted TLS certificates for localhost and development domains
Go - Trivy38,205 Stars
1 shared tag(s) · 1 shared category(s)
Scan images, filesystems, repositories, VMs, and Kubernetes for CVEs, secrets, IaC issues, and licenses
Go - HashiCorp Vault36,336 Stars
1 shared tag(s) · 1 shared category(s)
manage secret storage, issuance, encryption, leases, and revocation under one policy model
Go - Web-Check34,971 Stars
1 shared tag(s) · 1 shared category(s)
collect a website's public signals, architecture, and attack surface in one view
TypeScript - JumpServer31,708 Stars
1 shared tag(s) · 1 shared category(s)
centralize privileged access to SSH, RDP, Kubernetes, and databases in one PAM platform
Python
Report incorrect information
Tell us if any listing information is incorrect or outdated.