To enhance the privacy of email content, Facebook is gradually rolling out an experimental new feature that enables people to add OpenPGP public keys to their profile; these keys can be used to “end-to-end” encrypt notification emails sent from Facebook to email accounts. People may also choose to share OpenPGP keys from their profile, with or without enabling encrypted notifications.
Users will be able to update their own public key, using a desktop browser, at:
Where encrypted notifications are enabled, Facebook will sign outbound messages using their own key to provide greater assurance that the contents of inbound emails are genuine. The Facebook key can be checked at keyservers such as SKS and MIT.