poolkey

package
v0.7.0 Latest Latest
Warning

This package is not in the latest version of its module.

Go to latest
Published: Oct 4, 2026 License: Apache-2.0 Imports: 3 Imported by: 0

Documentation

Overview

Package poolkey is the one place the binary's trusted pool key lives.

THE KEY HAS ONE HOME AND IT IS HERE. A fetched index's detached signature is checked under an ed25519 public key the build carries, and the same key appears in the relay's wrangler.toml and in the mirror workflow — but in Go it is spelled exactly once, in this package, and every reader of it (cmd/codeaf's verbs and the seed generator beside the index) imports this rather than repeating the base64. A second spelling is a key two readers can drift apart on, and a signature one of them cannot check.

The key is the index signer's public half, and it is public: the private seed is the relay's POOL_SIGNING_KEY secret and is never stored in the repository.

Index

Constants

This section is empty.

Variables

This section is empty.

Functions

func Encoded

func Encoded() string

Encoded answers with the base64 text the key was built from, for a caller that has to say the key rather than check under it.

func Keys

func Keys() []ed25519.PublicKey

Keys answers with the built-in trusted keys, as a COPY: the list is read by many callers and handed into a puller, and neither the slice nor a key's bytes are the caller's to change.

Types

This section is empty.

Jump to

Keyboard shortcuts

? : This menu
/ : Search site
f or F : Jump to
y or Y : Canonical URL