Skip to content

Canonical verify origin → verify.keyhalve.com (source only, no publish)#10

Merged
ValidPay-io merged 2 commits into
mainfrom
feat/canonical-verify-origin
Jun 26, 2026
Merged

Canonical verify origin → verify.keyhalve.com (source only, no publish)#10
ValidPay-io merged 2 commits into
mainfrom
feat/canonical-verify-origin

Conversation

@ValidPay-io

Copy link
Copy Markdown
Owner

Default verify URL base now points at the single canonical verify origin verify.keyhalve.com (the KeyHalve-hosted two-zone renderer). Source only — package NOT published (awaiting Mike's publish GO). Tests updated + pass. Tenant resolves from the intent prefix; no per-issuer config.

Mike and others added 2 commits June 21, 2026 11:49
- crypto: split_key_pieces/combine_key_pieces (byte-identical to node + verifier).
- rail.py: fetch_rail_piece + pinned Ed25519 verify (cryptography) — fail-closed.
- client: create_end_cell_intent (ShareA + keyhalve+platform pieces); verify_intent
  end_cell branch fetches platform shares (API) + rail share (rail), XOR-combines.
  rail_base_url / rail_public_key_spki client options.
- tests: split/combine round-trip; rail verify, tamper/non-pinned/wrong-holder/404/409 fail-closed.
7 end-cell tests pass; suite green (pre-existing numpy-binding env failures unrelated).
HOLD publish until the End-Cell cutover.

Co-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>
verify.keyhalve.com is now the SINGLE canonical verify origin (the KeyHalve-hosted
two-zone renderer). Source/docs only. SDK packages NOT published (awaiting Mike's
publish GO). Tenant resolves from the intent prefix; no per-issuer config.

Co-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>
@ValidPay-io
ValidPay-io merged commit 614fbbe into main Jun 26, 2026
@ValidPay-io
ValidPay-io deleted the feat/canonical-verify-origin branch June 26, 2026 08:33
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants