//! Generated by `trust-tasks-codegen` — do not edit by hand.
//!
//! Spec slug: `auth/signing-key/list`. Version: `0.1`.
#[allow(unused_imports)]
use serde::{Deserialize, Serialize};
/// Error types.
pub mod error {
/// Error from a `TryFrom` or `FromStr` implementation.
pub struct ConversionError(::std::borrow::Cow<'static, str>);
impl ::std::error::Error for ConversionError {}
impl ::std::fmt::Display for ConversionError {
fn fmt(&self, f: &mut ::std::fmt::Formatter<'_>) -> Result<(), ::std::fmt::Error> {
::std::fmt::Display::fmt(&self.0, f)
}
}
impl ::std::fmt::Debug for ConversionError {
fn fmt(&self, f: &mut ::std::fmt::Formatter<'_>) -> Result<(), ::std::fmt::Error> {
::std::fmt::Debug::fmt(&self.0, f)
}
}
impl From<&'static str> for ConversionError {
fn from(value: &'static str) -> Self {
Self(value.into())
}
}
impl From<String> for ConversionError {
fn from(value: String) -> Self {
Self(value.into())
}
}
}
///A human-readable name for where the key lives, chosen by the enrolling identity — e.g. `Work laptop — Chrome`. Read by that identity and by administrators deciding which key to revoke; retained with the delegation. Free text authored by the enrolling identity, untrusted, and attributed to it wherever it is rendered. Absent rather than invented when none was chosen: an invented label is indistinguishable from a chosen one to somebody deciding which key to revoke.
///
/// <details><summary>JSON schema</summary>
///
/// ```json
///{
/// "title": "DeviceLabel",
/// "description": "A human-readable name for where the key lives, chosen by the enrolling identity — e.g. `Work laptop — Chrome`. Read by that identity and by administrators deciding which key to revoke; retained with the delegation. Free text authored by the enrolling identity, untrusted, and attributed to it wherever it is rendered. Absent rather than invented when none was chosen: an invented label is indistinguishable from a chosen one to somebody deciding which key to revoke.",
/// "type": "string",
/// "maxLength": 128,
/// "minLength": 1
///}
/// ```
/// </details>
#[derive(::serde::Serialize, Clone, Debug, Eq, Hash, Ord, PartialEq, PartialOrd)]
#[serde(transparent)]
pub struct DeviceLabel(::std::string::String);
impl ::std::ops::Deref for DeviceLabel {
type Target = ::std::string::String;
fn deref(&self) -> &::std::string::String {
&self.0
}
}
impl ::std::convert::From<DeviceLabel> for ::std::string::String {
fn from(value: DeviceLabel) -> Self {
value.0
}
}
impl ::std::str::FromStr for DeviceLabel {
type Err = self::error::ConversionError;
fn from_str(value: &str) -> ::std::result::Result<Self, self::error::ConversionError> {
if value.chars().count() > 128usize {
return Err("longer than 128 characters".into());
}
if value.chars().count() < 1usize {
return Err("shorter than 1 characters".into());
}
Ok(Self(value.to_string()))
}
}
impl ::std::convert::TryFrom<&str> for DeviceLabel {
type Error = self::error::ConversionError;
fn try_from(value: &str) -> ::std::result::Result<Self, self::error::ConversionError> {
value.parse()
}
}
impl ::std::convert::TryFrom<&::std::string::String> for DeviceLabel {
type Error = self::error::ConversionError;
fn try_from(
value: &::std::string::String,
) -> ::std::result::Result<Self, self::error::ConversionError> {
value.parse()
}
}
impl ::std::convert::TryFrom<::std::string::String> for DeviceLabel {
type Error = self::error::ConversionError;
fn try_from(
value: ::std::string::String,
) -> ::std::result::Result<Self, self::error::ConversionError> {
value.parse()
}
}
impl<'de> ::serde::Deserialize<'de> for DeviceLabel {
fn deserialize<D>(deserializer: D) -> ::std::result::Result<Self, D::Error>
where
D: ::serde::Deserializer<'de>,
{
::std::string::String::deserialize(deserializer)?
.parse()
.map_err(|e: self::error::ConversionError| {
<D::Error as ::serde::de::Error>::custom(e.to_string())
})
}
}
///Vendor-namespaced extension object per SPEC.md §4.5.1. Each immediate key MUST be a reverse-DNS namespace; structure under each namespace is opaque to the framework.
///
/// <details><summary>JSON schema</summary>
///
/// ```json
///{
/// "title": "Ext",
/// "description": "Vendor-namespaced extension object per SPEC.md §4.5.1. Each immediate key MUST be a reverse-DNS namespace; structure under each namespace is opaque to the framework.",
/// "type": "object",
/// "minProperties": 1,
/// "additionalProperties": true,
/// "propertyNames": {
/// "pattern": "^[a-z][a-z0-9-]*(\\.[a-z0-9-]+)+$"
/// }
///}
/// ```
/// </details>
#[derive(::serde::Deserialize, ::serde::Serialize, Clone, Debug)]
#[serde(transparent)]
pub struct Ext(pub ::std::collections::HashMap<ExtKey, ::serde_json::Value>);
impl ::std::ops::Deref for Ext {
type Target = ::std::collections::HashMap<ExtKey, ::serde_json::Value>;
fn deref(&self) -> &::std::collections::HashMap<ExtKey, ::serde_json::Value> {
&self.0
}
}
impl ::std::convert::From<Ext> for ::std::collections::HashMap<ExtKey, ::serde_json::Value> {
fn from(value: Ext) -> Self {
value.0
}
}
impl ::std::convert::From<::std::collections::HashMap<ExtKey, ::serde_json::Value>> for Ext {
fn from(value: ::std::collections::HashMap<ExtKey, ::serde_json::Value>) -> Self {
Self(value)
}
}
///`ExtKey`
///
/// <details><summary>JSON schema</summary>
///
/// ```json
///{
/// "type": "string",
/// "pattern": "^[a-z][a-z0-9-]*(\\.[a-z0-9-]+)+$"
///}
/// ```
/// </details>
#[derive(::serde::Serialize, Clone, Debug, Eq, Hash, Ord, PartialEq, PartialOrd)]
#[serde(transparent)]
pub struct ExtKey(::std::string::String);
impl ::std::ops::Deref for ExtKey {
type Target = ::std::string::String;
fn deref(&self) -> &::std::string::String {
&self.0
}
}
impl ::std::convert::From<ExtKey> for ::std::string::String {
fn from(value: ExtKey) -> Self {
value.0
}
}
impl ::std::str::FromStr for ExtKey {
type Err = self::error::ConversionError;
fn from_str(value: &str) -> ::std::result::Result<Self, self::error::ConversionError> {
static PATTERN: ::std::sync::LazyLock<::regress::Regex> =
::std::sync::LazyLock::new(|| {
::regress::Regex::new("^[a-z][a-z0-9-]*(\\.[a-z0-9-]+)+$").unwrap()
});
if PATTERN.find(value).is_none() {
return Err("doesn't match pattern \"^[a-z][a-z0-9-]*(\\.[a-z0-9-]+)+$\"".into());
}
Ok(Self(value.to_string()))
}
}
impl ::std::convert::TryFrom<&str> for ExtKey {
type Error = self::error::ConversionError;
fn try_from(value: &str) -> ::std::result::Result<Self, self::error::ConversionError> {
value.parse()
}
}
impl ::std::convert::TryFrom<&::std::string::String> for ExtKey {
type Error = self::error::ConversionError;
fn try_from(
value: &::std::string::String,
) -> ::std::result::Result<Self, self::error::ConversionError> {
value.parse()
}
}
impl ::std::convert::TryFrom<::std::string::String> for ExtKey {
type Error = self::error::ConversionError;
fn try_from(
value: ::std::string::String,
) -> ::std::result::Result<Self, self::error::ConversionError> {
value.parse()
}
}
impl<'de> ::serde::Deserialize<'de> for ExtKey {
fn deserialize<D>(deserializer: D) -> ::std::result::Result<Self, D::Error>
where
D: ::serde::Deserializer<'de>,
{
::std::string::String::deserialize(deserializer)?
.parse()
.map_err(|e: self::error::ConversionError| {
<D::Error as ::serde::de::Error>::custom(e.to_string())
})
}
}
///An identity lists its own signing-key delegations. The payload names no subject: the identity listed is the one the document's proof resolves to, so a caller cannot ask for somebody else's. The outer document members are owned by the framework — SPEC §6.3.
///
/// <details><summary>JSON schema</summary>
///
/// ```json
///{
/// "$id": "https://trusttasks.org/spec/auth/signing-key/list/0.1",
/// "title": "Payload",
/// "description": "An identity lists its own signing-key delegations. The payload names no subject: the identity listed is the one the document's proof resolves to, so a caller cannot ask for somebody else's. The outer document members are owned by the framework — SPEC §6.3.",
/// "type": "object",
/// "properties": {
/// "ext": {
/// "$ref": "#/definitions/Ext"
/// }
/// },
/// "additionalProperties": false
///}
/// ```
/// </details>
#[derive(::serde::Deserialize, ::serde::Serialize, Clone, Debug)]
#[serde(deny_unknown_fields)]
#[non_exhaustive]
pub struct Payload {
#[serde(default, skip_serializing_if = "::std::option::Option::is_none")]
pub ext: ::std::option::Option<Ext>,
}
impl ::std::default::Default for Payload {
fn default() -> Self {
Self {
ext: Default::default(),
}
}
}
impl Payload {
pub fn builder() -> builder::Payload {
Default::default()
}
}
///Every delegation enrolled for the caller's identity, newest first, revoked ones included.
///
/// <details><summary>JSON schema</summary>
///
/// ```json
///{
/// "title": "Response",
/// "description": "Every delegation enrolled for the caller's identity, newest first, revoked ones included.",
/// "type": "object",
/// "required": [
/// "signingKeys"
/// ],
/// "properties": {
/// "ext": {
/// "$ref": "#/definitions/Ext"
/// },
/// "signingKeys": {
/// "type": "array",
/// "items": {
/// "$ref": "#/definitions/SigningKey"
/// },
/// "maxItems": 256
/// }
/// },
/// "additionalProperties": false,
/// "$anchor": "response"
///}
/// ```
/// </details>
#[derive(::serde::Deserialize, ::serde::Serialize, Clone, Debug)]
#[serde(deny_unknown_fields)]
#[non_exhaustive]
pub struct Response {
#[serde(default, skip_serializing_if = "::std::option::Option::is_none")]
pub ext: ::std::option::Option<Ext>,
#[serde(rename = "signingKeys")]
pub signing_keys: ::std::vec::Vec<SigningKey>,
}
impl Response {
pub fn builder() -> builder::Response {
Default::default()
}
}
///One signing-key delegation, as its holder sees it. A delegation confers nothing of its own: it names an identity that already holds whatever standing it holds, and a document signed by the key is authorized by that identity's standing read at execution time.
///
/// <details><summary>JSON schema</summary>
///
/// ```json
///{
/// "title": "SigningKey",
/// "description": "One signing-key delegation, as its holder sees it. A delegation confers nothing of its own: it names an identity that already holds whatever standing it holds, and a document signed by the key is authorized by that identity's standing read at execution time.",
/// "type": "object",
/// "required": [
/// "active",
/// "createdAt",
/// "expiresAt",
/// "identityDid",
/// "scope",
/// "signingKeyDid"
/// ],
/// "properties": {
/// "active": {
/// "description": "Whether the delegation authorizes documents right now: not revoked and not past `expiresAt`. Computed by the consumer with the predicate its verifier applies, so a holder does not re-implement it and disagree.",
/// "type": "boolean"
/// },
/// "createdAt": {
/// "description": "When the delegation was enrolled.",
/// "type": "string",
/// "format": "date-time"
/// },
/// "deviceLabel": {
/// "$ref": "#/definitions/DeviceLabel"
/// },
/// "expiresAt": {
/// "description": "When the delegation stops authorizing documents. Always present: the consumer sets it at enrolment and caps it at its own maximum lifetime, whatever the producer asked for, so no delegation outlives the consumer's policy.",
/// "type": "string",
/// "format": "date-time"
/// },
/// "identityDid": {
/// "description": "The identity the key acts for. Included so a holder need not infer it.",
/// "type": "string",
/// "maxLength": 2048,
/// "minLength": 5,
/// "pattern": "^did:"
/// },
/// "lastUsedAt": {
/// "description": "When the delegation last authorized a document, as far as the consumer recorded. A usability signal for choosing which key to revoke, recorded best-effort; its absence does not mean the key was never used.",
/// "type": "string",
/// "format": "date-time"
/// },
/// "revokedAt": {
/// "description": "When the delegation was revoked. A revoked delegation authorizes nothing and its key cannot be enrolled again.",
/// "type": "string",
/// "format": "date-time"
/// },
/// "scope": {
/// "$ref": "#/definitions/SigningKeyScope"
/// },
/// "signingKeyDid": {
/// "$ref": "#/definitions/SigningKeyDid"
/// }
/// },
/// "additionalProperties": false
///}
/// ```
/// </details>
#[derive(::serde::Deserialize, ::serde::Serialize, Clone, Debug)]
#[serde(deny_unknown_fields)]
#[non_exhaustive]
pub struct SigningKey {
///Whether the delegation authorizes documents right now: not revoked and not past `expiresAt`. Computed by the consumer with the predicate its verifier applies, so a holder does not re-implement it and disagree.
pub active: bool,
///When the delegation was enrolled.
#[serde(rename = "createdAt")]
pub created_at: ::chrono::DateTime<::chrono::offset::Utc>,
#[serde(
rename = "deviceLabel",
default,
skip_serializing_if = "::std::option::Option::is_none"
)]
pub device_label: ::std::option::Option<DeviceLabel>,
///When the delegation stops authorizing documents. Always present: the consumer sets it at enrolment and caps it at its own maximum lifetime, whatever the producer asked for, so no delegation outlives the consumer's policy.
#[serde(rename = "expiresAt")]
pub expires_at: ::chrono::DateTime<::chrono::offset::Utc>,
///The identity the key acts for. Included so a holder need not infer it.
#[serde(rename = "identityDid")]
pub identity_did: SigningKeyIdentityDid,
///When the delegation last authorized a document, as far as the consumer recorded. A usability signal for choosing which key to revoke, recorded best-effort; its absence does not mean the key was never used.
#[serde(
rename = "lastUsedAt",
default,
skip_serializing_if = "::std::option::Option::is_none"
)]
pub last_used_at: ::std::option::Option<::chrono::DateTime<::chrono::offset::Utc>>,
///When the delegation was revoked. A revoked delegation authorizes nothing and its key cannot be enrolled again.
#[serde(
rename = "revokedAt",
default,
skip_serializing_if = "::std::option::Option::is_none"
)]
pub revoked_at: ::std::option::Option<::chrono::DateTime<::chrono::offset::Utc>>,
pub scope: SigningKeyScope,
#[serde(rename = "signingKeyDid")]
pub signing_key_did: SigningKeyDid,
}
impl SigningKey {
pub fn builder() -> builder::SigningKey {
Default::default()
}
}
///The delegated key, as a `did:key` — an Ed25519 multikey (`z6Mk…`) derived from the public half of a keypair the holder generated for itself, typically a non-extractable browser key. `did:key` only, because its document is a function of the key and resolves with no network: a key whose DID document could be rewritten after enrolment is not the key that was enrolled.
///
/// <details><summary>JSON schema</summary>
///
/// ```json
///{
/// "title": "SigningKeyDid",
/// "description": "The delegated key, as a `did:key` — an Ed25519 multikey (`z6Mk…`) derived from the public half of a keypair the holder generated for itself, typically a non-extractable browser key. `did:key` only, because its document is a function of the key and resolves with no network: a key whose DID document could be rewritten after enrolment is not the key that was enrolled.",
/// "type": "string",
/// "maxLength": 256,
/// "minLength": 9,
/// "pattern": "^did:key:z[1-9A-HJ-NP-Za-km-z]+$"
///}
/// ```
/// </details>
#[derive(::serde::Serialize, Clone, Debug, Eq, Hash, Ord, PartialEq, PartialOrd)]
#[serde(transparent)]
pub struct SigningKeyDid(::std::string::String);
impl ::std::ops::Deref for SigningKeyDid {
type Target = ::std::string::String;
fn deref(&self) -> &::std::string::String {
&self.0
}
}
impl ::std::convert::From<SigningKeyDid> for ::std::string::String {
fn from(value: SigningKeyDid) -> Self {
value.0
}
}
impl ::std::str::FromStr for SigningKeyDid {
type Err = self::error::ConversionError;
fn from_str(value: &str) -> ::std::result::Result<Self, self::error::ConversionError> {
if value.chars().count() > 256usize {
return Err("longer than 256 characters".into());
}
if value.chars().count() < 9usize {
return Err("shorter than 9 characters".into());
}
static PATTERN: ::std::sync::LazyLock<::regress::Regex> =
::std::sync::LazyLock::new(|| {
::regress::Regex::new("^did:key:z[1-9A-HJ-NP-Za-km-z]+$").unwrap()
});
if PATTERN.find(value).is_none() {
return Err("doesn't match pattern \"^did:key:z[1-9A-HJ-NP-Za-km-z]+$\"".into());
}
Ok(Self(value.to_string()))
}
}
impl ::std::convert::TryFrom<&str> for SigningKeyDid {
type Error = self::error::ConversionError;
fn try_from(value: &str) -> ::std::result::Result<Self, self::error::ConversionError> {
value.parse()
}
}
impl ::std::convert::TryFrom<&::std::string::String> for SigningKeyDid {
type Error = self::error::ConversionError;
fn try_from(
value: &::std::string::String,
) -> ::std::result::Result<Self, self::error::ConversionError> {
value.parse()
}
}
impl ::std::convert::TryFrom<::std::string::String> for SigningKeyDid {
type Error = self::error::ConversionError;
fn try_from(
value: ::std::string::String,
) -> ::std::result::Result<Self, self::error::ConversionError> {
value.parse()
}
}
impl<'de> ::serde::Deserialize<'de> for SigningKeyDid {
fn deserialize<D>(deserializer: D) -> ::std::result::Result<Self, D::Error>
where
D: ::serde::Deserializer<'de>,
{
::std::string::String::deserialize(deserializer)?
.parse()
.map_err(|e: self::error::ConversionError| {
<D::Error as ::serde::de::Error>::custom(e.to_string())
})
}
}
///The identity the key acts for. Included so a holder need not infer it.
///
/// <details><summary>JSON schema</summary>
///
/// ```json
///{
/// "description": "The identity the key acts for. Included so a holder need not infer it.",
/// "type": "string",
/// "maxLength": 2048,
/// "minLength": 5,
/// "pattern": "^did:"
///}
/// ```
/// </details>
#[derive(::serde::Serialize, Clone, Debug, Eq, Hash, Ord, PartialEq, PartialOrd)]
#[serde(transparent)]
pub struct SigningKeyIdentityDid(::std::string::String);
impl ::std::ops::Deref for SigningKeyIdentityDid {
type Target = ::std::string::String;
fn deref(&self) -> &::std::string::String {
&self.0
}
}
impl ::std::convert::From<SigningKeyIdentityDid> for ::std::string::String {
fn from(value: SigningKeyIdentityDid) -> Self {
value.0
}
}
impl ::std::str::FromStr for SigningKeyIdentityDid {
type Err = self::error::ConversionError;
fn from_str(value: &str) -> ::std::result::Result<Self, self::error::ConversionError> {
if value.chars().count() > 2048usize {
return Err("longer than 2048 characters".into());
}
if value.chars().count() < 5usize {
return Err("shorter than 5 characters".into());
}
static PATTERN: ::std::sync::LazyLock<::regress::Regex> =
::std::sync::LazyLock::new(|| ::regress::Regex::new("^did:").unwrap());
if PATTERN.find(value).is_none() {
return Err("doesn't match pattern \"^did:\"".into());
}
Ok(Self(value.to_string()))
}
}
impl ::std::convert::TryFrom<&str> for SigningKeyIdentityDid {
type Error = self::error::ConversionError;
fn try_from(value: &str) -> ::std::result::Result<Self, self::error::ConversionError> {
value.parse()
}
}
impl ::std::convert::TryFrom<&::std::string::String> for SigningKeyIdentityDid {
type Error = self::error::ConversionError;
fn try_from(
value: &::std::string::String,
) -> ::std::result::Result<Self, self::error::ConversionError> {
value.parse()
}
}
impl ::std::convert::TryFrom<::std::string::String> for SigningKeyIdentityDid {
type Error = self::error::ConversionError;
fn try_from(
value: ::std::string::String,
) -> ::std::result::Result<Self, self::error::ConversionError> {
value.parse()
}
}
impl<'de> ::serde::Deserialize<'de> for SigningKeyIdentityDid {
fn deserialize<D>(deserializer: D) -> ::std::result::Result<Self, D::Error>
where
D: ::serde::Deserializer<'de>,
{
::std::string::String::deserialize(deserializer)?
.parse()
.map_err(|e: self::error::ConversionError| {
<D::Error as ::serde::de::Error>::custom(e.to_string())
})
}
}
///What a delegated key may be accepted for. `console`: the operations an administration console performs on the identity's behalf, authorized by the identity's own standing. Never an approver's signature on a consent or approval decision, whatever the scope: those require an `assertionMethod` key of the approver's own DID document, which a delegated key never is. A closed enumeration so a consumer cannot be asked for a scope it does not define; a later version adds values.
///
/// <details><summary>JSON schema</summary>
///
/// ```json
///{
/// "title": "SigningKeyScope",
/// "description": "What a delegated key may be accepted for. `console`: the operations an administration console performs on the identity's behalf, authorized by the identity's own standing. Never an approver's signature on a consent or approval decision, whatever the scope: those require an `assertionMethod` key of the approver's own DID document, which a delegated key never is. A closed enumeration so a consumer cannot be asked for a scope it does not define; a later version adds values.",
/// "type": "string",
/// "enum": [
/// "console"
/// ]
///}
/// ```
/// </details>
#[derive(
::serde::Deserialize,
::serde::Serialize,
Clone,
Copy,
Debug,
Eq,
Hash,
Ord,
PartialEq,
PartialOrd,
)]
#[non_exhaustive]
pub enum SigningKeyScope {
#[serde(rename = "console")]
Console,
}
impl ::std::fmt::Display for SigningKeyScope {
fn fmt(&self, f: &mut ::std::fmt::Formatter<'_>) -> ::std::fmt::Result {
match *self {
Self::Console => f.write_str("console"),
}
}
}
impl ::std::str::FromStr for SigningKeyScope {
type Err = self::error::ConversionError;
fn from_str(value: &str) -> ::std::result::Result<Self, self::error::ConversionError> {
match value {
"console" => Ok(Self::Console),
_ => Err("invalid value".into()),
}
}
}
impl ::std::convert::TryFrom<&str> for SigningKeyScope {
type Error = self::error::ConversionError;
fn try_from(value: &str) -> ::std::result::Result<Self, self::error::ConversionError> {
value.parse()
}
}
impl ::std::convert::TryFrom<&::std::string::String> for SigningKeyScope {
type Error = self::error::ConversionError;
fn try_from(
value: &::std::string::String,
) -> ::std::result::Result<Self, self::error::ConversionError> {
value.parse()
}
}
impl ::std::convert::TryFrom<::std::string::String> for SigningKeyScope {
type Error = self::error::ConversionError;
fn try_from(
value: ::std::string::String,
) -> ::std::result::Result<Self, self::error::ConversionError> {
value.parse()
}
}
/// Types for composing complex structures.
pub mod builder {
#[derive(Clone, Debug)]
pub struct Payload {
ext: ::std::result::Result<::std::option::Option<super::Ext>, ::std::string::String>,
}
impl ::std::default::Default for Payload {
fn default() -> Self {
Self {
ext: Ok(Default::default()),
}
}
}
impl Payload {
pub fn ext<T>(mut self, value: T) -> Self
where
T: ::std::convert::TryInto<::std::option::Option<super::Ext>>,
T::Error: ::std::fmt::Display,
{
self.ext = value
.try_into()
.map_err(|e| format!("error converting supplied value for ext: {e}"));
self
}
}
impl ::std::convert::TryFrom<Payload> for super::Payload {
type Error = super::error::ConversionError;
fn try_from(value: Payload) -> ::std::result::Result<Self, super::error::ConversionError> {
Ok(Self { ext: value.ext? })
}
}
impl ::std::convert::From<super::Payload> for Payload {
fn from(value: super::Payload) -> Self {
Self { ext: Ok(value.ext) }
}
}
#[derive(Clone, Debug)]
pub struct Response {
ext: ::std::result::Result<::std::option::Option<super::Ext>, ::std::string::String>,
signing_keys:
::std::result::Result<::std::vec::Vec<super::SigningKey>, ::std::string::String>,
}
impl ::std::default::Default for Response {
fn default() -> Self {
Self {
ext: Ok(Default::default()),
signing_keys: Err("no value supplied for signing_keys".to_string()),
}
}
}
impl Response {
pub fn ext<T>(mut self, value: T) -> Self
where
T: ::std::convert::TryInto<::std::option::Option<super::Ext>>,
T::Error: ::std::fmt::Display,
{
self.ext = value
.try_into()
.map_err(|e| format!("error converting supplied value for ext: {e}"));
self
}
pub fn signing_keys<T>(mut self, value: T) -> Self
where
T: ::std::convert::TryInto<::std::vec::Vec<super::SigningKey>>,
T::Error: ::std::fmt::Display,
{
self.signing_keys = value
.try_into()
.map_err(|e| format!("error converting supplied value for signing_keys: {e}"));
self
}
}
impl ::std::convert::TryFrom<Response> for super::Response {
type Error = super::error::ConversionError;
fn try_from(value: Response) -> ::std::result::Result<Self, super::error::ConversionError> {
Ok(Self {
ext: value.ext?,
signing_keys: value.signing_keys?,
})
}
}
impl ::std::convert::From<super::Response> for Response {
fn from(value: super::Response) -> Self {
Self {
ext: Ok(value.ext),
signing_keys: Ok(value.signing_keys),
}
}
}
#[derive(Clone, Debug)]
pub struct SigningKey {
active: ::std::result::Result<bool, ::std::string::String>,
created_at:
::std::result::Result<::chrono::DateTime<::chrono::offset::Utc>, ::std::string::String>,
device_label:
::std::result::Result<::std::option::Option<super::DeviceLabel>, ::std::string::String>,
expires_at:
::std::result::Result<::chrono::DateTime<::chrono::offset::Utc>, ::std::string::String>,
identity_did: ::std::result::Result<super::SigningKeyIdentityDid, ::std::string::String>,
last_used_at: ::std::result::Result<
::std::option::Option<::chrono::DateTime<::chrono::offset::Utc>>,
::std::string::String,
>,
revoked_at: ::std::result::Result<
::std::option::Option<::chrono::DateTime<::chrono::offset::Utc>>,
::std::string::String,
>,
scope: ::std::result::Result<super::SigningKeyScope, ::std::string::String>,
signing_key_did: ::std::result::Result<super::SigningKeyDid, ::std::string::String>,
}
impl ::std::default::Default for SigningKey {
fn default() -> Self {
Self {
active: Err("no value supplied for active".to_string()),
created_at: Err("no value supplied for created_at".to_string()),
device_label: Ok(Default::default()),
expires_at: Err("no value supplied for expires_at".to_string()),
identity_did: Err("no value supplied for identity_did".to_string()),
last_used_at: Ok(Default::default()),
revoked_at: Ok(Default::default()),
scope: Err("no value supplied for scope".to_string()),
signing_key_did: Err("no value supplied for signing_key_did".to_string()),
}
}
}
impl SigningKey {
pub fn active<T>(mut self, value: T) -> Self
where
T: ::std::convert::TryInto<bool>,
T::Error: ::std::fmt::Display,
{
self.active = value
.try_into()
.map_err(|e| format!("error converting supplied value for active: {e}"));
self
}
pub fn created_at<T>(mut self, value: T) -> Self
where
T: ::std::convert::TryInto<::chrono::DateTime<::chrono::offset::Utc>>,
T::Error: ::std::fmt::Display,
{
self.created_at = value
.try_into()
.map_err(|e| format!("error converting supplied value for created_at: {e}"));
self
}
pub fn device_label<T>(mut self, value: T) -> Self
where
T: ::std::convert::TryInto<::std::option::Option<super::DeviceLabel>>,
T::Error: ::std::fmt::Display,
{
self.device_label = value
.try_into()
.map_err(|e| format!("error converting supplied value for device_label: {e}"));
self
}
pub fn expires_at<T>(mut self, value: T) -> Self
where
T: ::std::convert::TryInto<::chrono::DateTime<::chrono::offset::Utc>>,
T::Error: ::std::fmt::Display,
{
self.expires_at = value
.try_into()
.map_err(|e| format!("error converting supplied value for expires_at: {e}"));
self
}
pub fn identity_did<T>(mut self, value: T) -> Self
where
T: ::std::convert::TryInto<super::SigningKeyIdentityDid>,
T::Error: ::std::fmt::Display,
{
self.identity_did = value
.try_into()
.map_err(|e| format!("error converting supplied value for identity_did: {e}"));
self
}
pub fn last_used_at<T>(mut self, value: T) -> Self
where
T: ::std::convert::TryInto<
::std::option::Option<::chrono::DateTime<::chrono::offset::Utc>>,
>,
T::Error: ::std::fmt::Display,
{
self.last_used_at = value
.try_into()
.map_err(|e| format!("error converting supplied value for last_used_at: {e}"));
self
}
pub fn revoked_at<T>(mut self, value: T) -> Self
where
T: ::std::convert::TryInto<
::std::option::Option<::chrono::DateTime<::chrono::offset::Utc>>,
>,
T::Error: ::std::fmt::Display,
{
self.revoked_at = value
.try_into()
.map_err(|e| format!("error converting supplied value for revoked_at: {e}"));
self
}
pub fn scope<T>(mut self, value: T) -> Self
where
T: ::std::convert::TryInto<super::SigningKeyScope>,
T::Error: ::std::fmt::Display,
{
self.scope = value
.try_into()
.map_err(|e| format!("error converting supplied value for scope: {e}"));
self
}
pub fn signing_key_did<T>(mut self, value: T) -> Self
where
T: ::std::convert::TryInto<super::SigningKeyDid>,
T::Error: ::std::fmt::Display,
{
self.signing_key_did = value
.try_into()
.map_err(|e| format!("error converting supplied value for signing_key_did: {e}"));
self
}
}
impl ::std::convert::TryFrom<SigningKey> for super::SigningKey {
type Error = super::error::ConversionError;
fn try_from(
value: SigningKey,
) -> ::std::result::Result<Self, super::error::ConversionError> {
Ok(Self {
active: value.active?,
created_at: value.created_at?,
device_label: value.device_label?,
expires_at: value.expires_at?,
identity_did: value.identity_did?,
last_used_at: value.last_used_at?,
revoked_at: value.revoked_at?,
scope: value.scope?,
signing_key_did: value.signing_key_did?,
})
}
}
impl ::std::convert::From<super::SigningKey> for SigningKey {
fn from(value: super::SigningKey) -> Self {
Self {
active: Ok(value.active),
created_at: Ok(value.created_at),
device_label: Ok(value.device_label),
expires_at: Ok(value.expires_at),
identity_did: Ok(value.identity_did),
last_used_at: Ok(value.last_used_at),
revoked_at: Ok(value.revoked_at),
scope: Ok(value.scope),
signing_key_did: Ok(value.signing_key_did),
}
}
}
}
impl crate::Payload for Payload {
const TYPE_URI: &'static str = "https://trusttasks.org/spec/auth/signing-key/list/0.1";
const IS_PROOF_REQUIRED: bool = true;
const IS_RECIPIENT_REQUIRED: bool = true;
const PAYLOAD_SCHEMA: Option<&'static str> = Some(
"{\n \"$defs\": {\n \"DeviceLabel\": {\n \"description\": \"A human-readable name for where the key lives, chosen by the enrolling identity — e.g. `Work laptop — Chrome`. Read by that identity and by administrators deciding which key to revoke; retained with the delegation. Free text authored by the enrolling identity, untrusted, and attributed to it wherever it is rendered. Absent rather than invented when none was chosen: an invented label is indistinguishable from a chosen one to somebody deciding which key to revoke.\",\n \"maxLength\": 128,\n \"minLength\": 1,\n \"title\": \"DeviceLabel\",\n \"type\": \"string\"\n },\n \"Ext\": {\n \"additionalProperties\": true,\n \"description\": \"Vendor-namespaced extension object per SPEC.md §4.5.1. Each immediate key MUST be a reverse-DNS namespace; structure under each namespace is opaque to the framework.\",\n \"minProperties\": 1,\n \"propertyNames\": {\n \"pattern\": \"^[a-z][a-z0-9-]*(\\\\.[a-z0-9-]+)+$\"\n },\n \"title\": \"Ext\",\n \"type\": \"object\"\n },\n \"Response\": {\n \"$anchor\": \"response\",\n \"additionalProperties\": false,\n \"description\": \"Every delegation enrolled for the caller's identity, newest first, revoked ones included.\",\n \"properties\": {\n \"ext\": {\n \"$ref\": \"#/$defs/Ext\"\n },\n \"signingKeys\": {\n \"items\": {\n \"$ref\": \"#/$defs/SigningKey\"\n },\n \"maxItems\": 256,\n \"type\": \"array\"\n }\n },\n \"required\": [\n \"signingKeys\"\n ],\n \"title\": \"Auth — Signing Key List — response payload\",\n \"type\": \"object\"\n },\n \"SigningKey\": {\n \"additionalProperties\": false,\n \"description\": \"One signing-key delegation, as its holder sees it. A delegation confers nothing of its own: it names an identity that already holds whatever standing it holds, and a document signed by the key is authorized by that identity's standing read at execution time.\",\n \"properties\": {\n \"active\": {\n \"description\": \"Whether the delegation authorizes documents right now: not revoked and not past `expiresAt`. Computed by the consumer with the predicate its verifier applies, so a holder does not re-implement it and disagree.\",\n \"type\": \"boolean\"\n },\n \"createdAt\": {\n \"description\": \"When the delegation was enrolled.\",\n \"format\": \"date-time\",\n \"type\": \"string\"\n },\n \"deviceLabel\": {\n \"$ref\": \"#/$defs/DeviceLabel\"\n },\n \"expiresAt\": {\n \"description\": \"When the delegation stops authorizing documents. Always present: the consumer sets it at enrolment and caps it at its own maximum lifetime, whatever the producer asked for, so no delegation outlives the consumer's policy.\",\n \"format\": \"date-time\",\n \"type\": \"string\"\n },\n \"identityDid\": {\n \"description\": \"The identity the key acts for. Included so a holder need not infer it.\",\n \"maxLength\": 2048,\n \"minLength\": 5,\n \"pattern\": \"^did:\",\n \"type\": \"string\"\n },\n \"lastUsedAt\": {\n \"description\": \"When the delegation last authorized a document, as far as the consumer recorded. A usability signal for choosing which key to revoke, recorded best-effort; its absence does not mean the key was never used.\",\n \"format\": \"date-time\",\n \"type\": \"string\"\n },\n \"revokedAt\": {\n \"description\": \"When the delegation was revoked. A revoked delegation authorizes nothing and its key cannot be enrolled again.\",\n \"format\": \"date-time\",\n \"type\": \"string\"\n },\n \"scope\": {\n \"$ref\": \"#/$defs/SigningKeyScope\"\n },\n \"signingKeyDid\": {\n \"$ref\": \"#/$defs/SigningKeyDid\"\n }\n },\n \"required\": [\n \"signingKeyDid\",\n \"identityDid\",\n \"scope\",\n \"createdAt\",\n \"expiresAt\",\n \"active\"\n ],\n \"title\": \"SigningKey\",\n \"type\": \"object\"\n },\n \"SigningKeyDid\": {\n \"description\": \"The delegated key, as a `did:key` — an Ed25519 multikey (`z6Mk…`) derived from the public half of a keypair the holder generated for itself, typically a non-extractable browser key. `did:key` only, because its document is a function of the key and resolves with no network: a key whose DID document could be rewritten after enrolment is not the key that was enrolled.\",\n \"maxLength\": 256,\n \"minLength\": 9,\n \"pattern\": \"^did:key:z[1-9A-HJ-NP-Za-km-z]+$\",\n \"title\": \"SigningKeyDid\",\n \"type\": \"string\"\n },\n \"SigningKeyScope\": {\n \"description\": \"What a delegated key may be accepted for. `console`: the operations an administration console performs on the identity's behalf, authorized by the identity's own standing. Never an approver's signature on a consent or approval decision, whatever the scope: those require an `assertionMethod` key of the approver's own DID document, which a delegated key never is. A closed enumeration so a consumer cannot be asked for a scope it does not define; a later version adds values.\",\n \"enum\": [\n \"console\"\n ],\n \"title\": \"SigningKeyScope\",\n \"type\": \"string\"\n }\n },\n \"$id\": \"https://trusttasks.org/spec/auth/signing-key/list/0.1\",\n \"$schema\": \"https://json-schema.org/draft/2020-12/schema\",\n \"additionalProperties\": false,\n \"description\": \"An identity lists its own signing-key delegations. The payload names no subject: the identity listed is the one the document's proof resolves to, so a caller cannot ask for somebody else's. The outer document members are owned by the framework — SPEC §6.3.\",\n \"properties\": {\n \"ext\": {\n \"$ref\": \"#/$defs/Ext\"\n }\n },\n \"title\": \"Auth — Signing Key List — payload\",\n \"type\": \"object\"\n}\n",
);
}
impl crate::Payload for Response {
const TYPE_URI: &'static str = "https://trusttasks.org/spec/auth/signing-key/list/0.1#response";
const IS_PROOF_REQUIRED: bool = true;
const IS_RECIPIENT_REQUIRED: bool = true;
const PAYLOAD_SCHEMA: Option<&'static str> = Some(
"{\n \"$defs\": {\n \"DeviceLabel\": {\n \"description\": \"A human-readable name for where the key lives, chosen by the enrolling identity — e.g. `Work laptop — Chrome`. Read by that identity and by administrators deciding which key to revoke; retained with the delegation. Free text authored by the enrolling identity, untrusted, and attributed to it wherever it is rendered. Absent rather than invented when none was chosen: an invented label is indistinguishable from a chosen one to somebody deciding which key to revoke.\",\n \"maxLength\": 128,\n \"minLength\": 1,\n \"title\": \"DeviceLabel\",\n \"type\": \"string\"\n },\n \"Ext\": {\n \"additionalProperties\": true,\n \"description\": \"Vendor-namespaced extension object per SPEC.md §4.5.1. Each immediate key MUST be a reverse-DNS namespace; structure under each namespace is opaque to the framework.\",\n \"minProperties\": 1,\n \"propertyNames\": {\n \"pattern\": \"^[a-z][a-z0-9-]*(\\\\.[a-z0-9-]+)+$\"\n },\n \"title\": \"Ext\",\n \"type\": \"object\"\n },\n \"Response\": {\n \"$anchor\": \"response\",\n \"additionalProperties\": false,\n \"description\": \"Every delegation enrolled for the caller's identity, newest first, revoked ones included.\",\n \"properties\": {\n \"ext\": {\n \"$ref\": \"#/$defs/Ext\"\n },\n \"signingKeys\": {\n \"items\": {\n \"$ref\": \"#/$defs/SigningKey\"\n },\n \"maxItems\": 256,\n \"type\": \"array\"\n }\n },\n \"required\": [\n \"signingKeys\"\n ],\n \"title\": \"Auth — Signing Key List — response payload\",\n \"type\": \"object\"\n },\n \"SigningKey\": {\n \"additionalProperties\": false,\n \"description\": \"One signing-key delegation, as its holder sees it. A delegation confers nothing of its own: it names an identity that already holds whatever standing it holds, and a document signed by the key is authorized by that identity's standing read at execution time.\",\n \"properties\": {\n \"active\": {\n \"description\": \"Whether the delegation authorizes documents right now: not revoked and not past `expiresAt`. Computed by the consumer with the predicate its verifier applies, so a holder does not re-implement it and disagree.\",\n \"type\": \"boolean\"\n },\n \"createdAt\": {\n \"description\": \"When the delegation was enrolled.\",\n \"format\": \"date-time\",\n \"type\": \"string\"\n },\n \"deviceLabel\": {\n \"$ref\": \"#/$defs/DeviceLabel\"\n },\n \"expiresAt\": {\n \"description\": \"When the delegation stops authorizing documents. Always present: the consumer sets it at enrolment and caps it at its own maximum lifetime, whatever the producer asked for, so no delegation outlives the consumer's policy.\",\n \"format\": \"date-time\",\n \"type\": \"string\"\n },\n \"identityDid\": {\n \"description\": \"The identity the key acts for. Included so a holder need not infer it.\",\n \"maxLength\": 2048,\n \"minLength\": 5,\n \"pattern\": \"^did:\",\n \"type\": \"string\"\n },\n \"lastUsedAt\": {\n \"description\": \"When the delegation last authorized a document, as far as the consumer recorded. A usability signal for choosing which key to revoke, recorded best-effort; its absence does not mean the key was never used.\",\n \"format\": \"date-time\",\n \"type\": \"string\"\n },\n \"revokedAt\": {\n \"description\": \"When the delegation was revoked. A revoked delegation authorizes nothing and its key cannot be enrolled again.\",\n \"format\": \"date-time\",\n \"type\": \"string\"\n },\n \"scope\": {\n \"$ref\": \"#/$defs/SigningKeyScope\"\n },\n \"signingKeyDid\": {\n \"$ref\": \"#/$defs/SigningKeyDid\"\n }\n },\n \"required\": [\n \"signingKeyDid\",\n \"identityDid\",\n \"scope\",\n \"createdAt\",\n \"expiresAt\",\n \"active\"\n ],\n \"title\": \"SigningKey\",\n \"type\": \"object\"\n },\n \"SigningKeyDid\": {\n \"description\": \"The delegated key, as a `did:key` — an Ed25519 multikey (`z6Mk…`) derived from the public half of a keypair the holder generated for itself, typically a non-extractable browser key. `did:key` only, because its document is a function of the key and resolves with no network: a key whose DID document could be rewritten after enrolment is not the key that was enrolled.\",\n \"maxLength\": 256,\n \"minLength\": 9,\n \"pattern\": \"^did:key:z[1-9A-HJ-NP-Za-km-z]+$\",\n \"title\": \"SigningKeyDid\",\n \"type\": \"string\"\n },\n \"SigningKeyScope\": {\n \"description\": \"What a delegated key may be accepted for. `console`: the operations an administration console performs on the identity's behalf, authorized by the identity's own standing. Never an approver's signature on a consent or approval decision, whatever the scope: those require an `assertionMethod` key of the approver's own DID document, which a delegated key never is. A closed enumeration so a consumer cannot be asked for a scope it does not define; a later version adds values.\",\n \"enum\": [\n \"console\"\n ],\n \"title\": \"SigningKeyScope\",\n \"type\": \"string\"\n }\n },\n \"$ref\": \"#/$defs/Response\",\n \"$schema\": \"https://json-schema.org/draft/2020-12/schema\"\n}\n",
);
}
impl crate::RequestPayload for Payload {
type Response = Response;
}
/// The extended error codes this specification declares (SPEC §7.3 item 9,
/// §8.5), in declaration order. Empty when it declares none.
pub const ERROR_CODES: &[crate::DeclaredErrorCode] = &[];
#[cfg(test)]
mod conformance {
//! Round-trip tests harvested from the spec's `spec.md`,
//! plus a `rejects_invalid_examples` test for any fixtures
//! in `payload.invalid-examples.json` (validate feature).
#[test]
fn request_example_1() {
const JSON: &str = "{\n \"id\": \"urn:uuid:8d1b6a3c-2e7f-4c1a-9b8e-3a5d7c9e1f01\",\n \"type\": \"https://trusttasks.org/spec/auth/signing-key/list/0.1#request\",\n \"issuer\": \"did:key:z6MkiTBz1ymuepAQ4HEHYSF1H8quG5GLVVQR3djdX3mDooWp\",\n \"recipient\": \"did:web:community.example\",\n \"issuedAt\": \"2026-09-28T11:00:00Z\",\n \"threadId\": \"urn:uuid:8d1b6a3c-2e7f-4c1a-9b8e-3a5d7c9e1fff\",\n \"payload\": {}\n}\n";
let doc: crate::TrustTask<super::Payload> =
serde_json::from_str(JSON).expect("deserialize request example");
let rendered = serde_json::to_value(&doc).expect("re-serialize");
let expected: serde_json::Value = serde_json::from_str(JSON).expect("re-parse expected");
assert_eq!(rendered, expected, "request example failed round-trip");
}
#[test]
fn response_example_1() {
const JSON: &str = "{\n \"id\": \"urn:uuid:8d1b6a3c-2e7f-4c1a-9b8e-3a5d7c9e1f02\",\n \"type\": \"https://trusttasks.org/spec/auth/signing-key/list/0.1#response\",\n \"issuer\": \"did:web:community.example\",\n \"recipient\": \"did:key:z6MkiTBz1ymuepAQ4HEHYSF1H8quG5GLVVQR3djdX3mDooWp\",\n \"issuedAt\": \"2026-09-28T11:00:01Z\",\n \"threadId\": \"urn:uuid:8d1b6a3c-2e7f-4c1a-9b8e-3a5d7c9e1fff\",\n \"payload\": {\n \"signingKeys\": [\n {\n \"signingKeyDid\": \"did:key:z6MkiTBz1ymuepAQ4HEHYSF1H8quG5GLVVQR3djdX3mDooWp\",\n \"identityDid\": \"did:web:alice.example\",\n \"scope\": \"console\",\n \"deviceLabel\": \"Work laptop — Chrome\",\n \"createdAt\": \"2026-09-28T10:00:31Z\",\n \"expiresAt\": \"2026-10-28T10:00:31Z\",\n \"lastUsedAt\": \"2026-09-28T10:58:12Z\",\n \"active\": true\n },\n {\n \"signingKeyDid\": \"did:key:z6MkhaXgBZDvotDkL5257faiztiGiC2QtKLGpbnnEGta2doK\",\n \"identityDid\": \"did:web:alice.example\",\n \"scope\": \"console\",\n \"deviceLabel\": \"Old desktop — Firefox\",\n \"createdAt\": \"2026-09-02T08:14:00Z\",\n \"expiresAt\": \"2026-10-02T08:14:00Z\",\n \"revokedAt\": \"2026-09-20T17:40:00Z\",\n \"active\": false\n }\n ]\n }\n}\n";
let doc: crate::TrustTask<super::Response> =
serde_json::from_str(JSON).expect("deserialize response example");
let rendered = serde_json::to_value(&doc).expect("re-serialize");
let expected: serde_json::Value = serde_json::from_str(JSON).expect("re-parse expected");
assert_eq!(rendered, expected, "response example failed round-trip");
}
/// Each fixture in `payload.invalid-examples.json` MUST be
/// rejected by at least one of: serde deserialization, or
/// JSON-Schema validation under the `validate` feature. The
/// fixture file documents the producer-side bug class that
/// each payload exemplifies; this generated test pins it.
#[cfg(feature = "validate")]
#[test]
fn rejects_invalid_examples() {
use crate::validate::ValidatedPayload;
let fixtures: &[(&str, &str)] = &[
(
"A subject member — the listed identity is the proven caller, and a field naming one would be a field an attacker can set.",
"{\n \"identityDid\": \"did:web:bob.example\"\n}",
),
(
"Unknown top-level member is rejected (additionalProperties: false).",
"{\n \"includeRevoked\": false\n}",
),
];
for (i, (note, raw)) in fixtures.iter().enumerate() {
let value: serde_json::Value = match serde_json::from_str(raw) {
Ok(v) => v,
Err(_) => continue,
};
let serde_ok = serde_json::from_value::<super::Payload>(value.clone()).is_ok();
let schema_ok = super::Payload::validate_value(&value).is_ok();
assert!(
!(serde_ok && schema_ok),
"invalid-example #{} ({:?}) was accepted by both serde and JSON Schema; \
the fixture's stated failure class is no longer caught:\n{}",
i + 1,
note,
raw
);
}
}
/// Each `"variant": "response"` fixture in
/// `payload.invalid-examples.json` MUST be rejected as a
/// response payload by at least one of: serde deserialization
/// into `Response`, or JSON-Schema validation against the
/// `$anchor: "response"` sub-schema (validate feature).
#[cfg(feature = "validate")]
#[test]
fn rejects_invalid_response_examples() {
use crate::validate::ValidatedPayload;
let fixtures: &[(&str, &str)] = &[
(
"Response without `signingKeys` — an identity with no keys is answered with an empty array, never an absent member.",
"{}",
),
(
"A listed key that is not a did:key.",
"{\n \"signingKeys\": [\n {\n \"active\": true,\n \"createdAt\": \"2026-09-28T10:00:31Z\",\n \"expiresAt\": \"2026-10-28T10:00:31Z\",\n \"identityDid\": \"did:web:alice.example\",\n \"scope\": \"console\",\n \"signingKeyDid\": \"did:web:laptop.example\"\n }\n ]\n}",
),
(
"A listed delegation without expiresAt — every delegation has one, and a holder deciding what to revoke needs to see it.",
"{\n \"signingKeys\": [\n {\n \"active\": true,\n \"createdAt\": \"2026-09-28T10:00:31Z\",\n \"identityDid\": \"did:web:alice.example\",\n \"scope\": \"console\",\n \"signingKeyDid\": \"did:key:z6MkiTBz1ymuepAQ4HEHYSF1H8quG5GLVVQR3djdX3mDooWp\"\n }\n ]\n}",
),
];
for (i, (note, raw)) in fixtures.iter().enumerate() {
let value: serde_json::Value = match serde_json::from_str(raw) {
Ok(v) => v,
Err(_) => continue,
};
let serde_ok = serde_json::from_value::<super::Response>(value.clone()).is_ok();
let schema_ok = super::Response::validate_value(&value).is_ok();
assert!(
!(serde_ok && schema_ok),
"invalid response example #{} ({:?}) was accepted by both serde and JSON Schema; \
the fixture's stated failure class is no longer caught:\n{}",
i + 1,
note,
raw
);
}
}
}