@veritasacta/verify
Advanced tools
+2
-2
| { | ||
| "name": "@veritasacta/verify", | ||
| "version": "0.9.1", | ||
| "version": "0.9.2", | ||
| "mcpName": "io.github.tomjwxf/veritasacta-verify", | ||
| "description": "Offline verifier for Veritas Acta signed receipts. Powers protect-mcp, ScopeBlind cold-chain hardware, and Microsoft AGT Lesson 18.", | ||
| "description": "Unified offline verifier for signed decision receipts, Legate proof packs, VOPRF anonymous credentials, and selective-disclosure receipts. Ed25519 + ML-DSA-65 hybrid. IETF draft-farley-acta-signed-receipts. scopeblind.com", | ||
| "license": "Apache-2.0", | ||
@@ -7,0 +7,0 @@ "type": "module", |
+3
-1
@@ -41,2 +41,4 @@ # @veritasacta/verify | ||
| | Gate receipt / bundle | ScopeBlind Gate receipt tuples (`scopeblind.gate.*`) and signed-manifest `scopeblind.gate.evidence-bundle/2` exports with semantic and exact chain checks | T1 | | ||
| | Legate governed receipt | Desktop runtime receipts (`scopeblind.legate.governed.*`) with determining-rule attribution and mandate-digest binding | T1 | | ||
| | Legate proof pack | Position-blind adherence records (`scopeblind.legate.proof-pack.v1`): held/blocked by rule, order-path shadow evidence, bound to mandate digest + signed-book provenance + receipt Merkle root. Ed25519 + optional hybrid ML-DSA-65 | T1 | | ||
@@ -111,3 +113,3 @@ ## Subcommands | ||
| - **Self-verifying.** `--self-check` cryptographically proves the installed verifier (24 source files) matches the canonical release. | ||
| - **Algorithm-agile.** Hybrid PQ (`ed25519+ml-dsa-65`) recognized; full PQ in v0.6+. | ||
| - **Algorithm-agile.** Hybrid PQ (`ed25519+ml-dsa-65`) recognized and verified (v0.9+). | ||
| - **Zero telemetry.** The verifier never phones home. | ||
@@ -114,0 +116,0 @@ |
AI-detected potential code anomaly
Supply chain riskAI has identified unusual behaviors that may pose a security risk.
URL strings
Supply chain riskPackage contains fragments of external URLs or IP addresses, which the package may be accessing at runtime.
AI-detected potential code anomaly
Supply chain riskAI has identified unusual behaviors that may pose a security risk.
URL strings
Supply chain riskPackage contains fragments of external URLs or IP addresses, which the package may be accessing at runtime.
486388
0.1%342
0.59%