Structs§
- Attenuation
Proof - Wire proof carried by
CapabilityToken.attenuation_proof. - Attenuation
Witness - On-wire attenuation witness. The normalized scope encodings are included so verifiers can hash and check the already-normalized relation.
- Delegation
Link - A link in the delegation chain, recording that
delegatorgranted a narrowed capability todelegatee. - Delegation
Link Body - The body of a delegation link, used as the signing input.
Enums§
- Attenuation
- Describes how a scope was narrowed during delegation.
Functions§
- compute_
attenuation_ witness - Compute an on-wire witness for a parent-to-child attenuation.
- delegate
- Recursive-delegation mint helper.
- scope_
hash - Compute the stable SHA-256 hash of a canonicalized scope.
- validate_
attenuation - Validate that a child scope is a valid attenuation of a parent scope.
- validate_
attenuation_ proof - Verify the wire
attenuation_proofpayload. - validate_
delegation_ chain - Validate an entire delegation chain.
- validate_
delegation_ chain_ with_ trust_ root - Validate a delegation chain under the chain-binding rule.
- verify_
attenuation_ witness - Verify a previously-computed attenuation witness against scope hashes.
Type Aliases§
- Scope
Hash - Hash of a canonicalized scope, encoded as lowercase SHA-256 hex.