[cryptography] post-PRISM boom in secure communications (WAS skype backdoor confirmation)

> The only answer is to take key management out of the users' hands. And
> do it automatically as part of the work flow.

You need at least a Big Fat Warning when the new fingerprint
differs from the cached one, and it's not just expired. 

