Does PGP contain a back door?
No, not that I am aware of. See question 5.2. The ARR feature explained in question 5.4 is not a back door; it is a well-known and openly discussed feature (though many people disapprove of it). You don’t have to use it if you don’t want to. 5.4 I have heard that PGP 5 contains key recovery features. Is this true? Yes. All PGP 5.x versions contains a feature known as ADK (Additional Decryption Key), or more correctly ARR (Additional Recipient Request). PGP, Inc. implemented this feature in PGP at the demand of companies who wanted to be able to recover messages written by their employees (e.g. when the employees quit). However, they made it entirely optional. It works like this: When you generate a new key using the PGP 5.5 business edition, you may specify that messages encrypted with this key should also be encrypted with your company’s key. When other people later encrypt messages using your key, PGP (any 5.x version) will request that the messages should also be encrypted using you