Skip to main content

ic_auth/
lib.rs

1//! Pure application-token encoding and optional token/IC signature verification.
2//!
3//! Hashing untrusted material does not authenticate it. Applications must not
4//! admit tokens by hashing them or checking just one signature. Use the optional
5//! token verifier with protected host inputs; session admission and replay
6//! consumption remain separate host operations.
7
8pub mod canonical;
9
10#[cfg(feature = "canister-signature-verification")]
11pub mod canister_signature;
12
13#[cfg(feature = "token-verification")]
14pub mod token;