ic_auth/lib.rs
1//! Pure application-token encoding and optional signature/token/session machinery.
2//!
3//! Hashing untrusted material does not authenticate it. Applications must not
4//! admit tokens by hashing them or checking just one signature. Use the optional
5//! token verifier with protected host inputs. The optional session engine uses
6//! one explicit host transaction for admission and replay consumption.
7
8pub mod canonical;
9
10#[cfg(feature = "canister-signature-preparation")]
11pub mod signature_store;
12
13#[cfg(feature = "canister-signature-verification")]
14pub mod canister_signature;
15
16#[cfg(feature = "token-verification")]
17pub mod token;
18
19#[cfg(feature = "sessions")]
20pub mod session;