Expand description
Client side of SPEC-WRITE-GRANTS: the user grant store, owner signing and
the local statement checks behind mkit grant, mkit epoch and
mkit visibility.
Nothing here is repository-scoped. The store lives beside the user
config, the relying-party pins come from the user config, and every
header is verified with the mkit-attest verifier before it is stored or
sent (SPEC-CONFIG-SECURITY; WP-2.13).
Modules§
- cli
- What
mkit grant,mkit epochandmkit visibilityshare: loading the layered config and relying-party pins, choosing an owner-signing plan, opening the remote, and printing. - owner
- Owner signing for
mkit grant create,mkit epoch bumpandmkit visibility set(WP-2.13, R-155). - remote
- Picking the remote a grant, epoch or visibility command talks to, the audience it signs for, and waiting for the server to finish (WP-2.14).
- spec
- Turning command-line spellings into the canonical statements of SPEC-WRITE-GRANTS §3, §5.1 and §9.1.
- store
- The user grant store (WP-2.13, R-155).
Structs§
- Verified
Grant Header - A grant header whose owner signature verified.
Enums§
- Header
Error - Why a header could not be verified locally.
Functions§
- now_ms
- Milliseconds since the Unix epoch.
- parse_
relying_ parties - Parse
grant.webauthn_rpentries (<rp_id> <origin>..., several entries separated by|). - read_
bounded - Read at most
maxbytes fromreader. - scope_
text <namespace>/*or<namespace>/<name>: the repositories a grant covers.- verify_
epoch_ header - SPEC-WRITE-GRANTS §5.2 checks 1–5 against the statement’s first audience.
- verify_
grant_ header - SPEC-WRITE-GRANTS §7 steps 1, 3 and 4 for a grant header.
- verify_
visibility_ header - SPEC-WRITE-GRANTS §9.1 checks for a visibility statement sent for
repository, against the statement’s first audience.