@tamga-network/trust
v0.1.0
Published
TrustSource(list): imzalı güven listelerini (lotl/tl/anchors) doğrular, yansıtır ve SPEC-BC-0001 §11.2 okuma setini sunar. Zincire geçişte aynı arayüzü TrustSource(chain) sağlar.
Readme
@tamga-network/trust
Signed trust lists (who may issue which document, since when, and their status) behind one TrustSource interface. Verifies the list of lists, the national lists and the public anchor log; answers in three values (YES / NO / UNKNOWN). @tamga-network/trust/core is the platform-independent core (React Native too).
Install
npm install @tamga-network/trustUsage
import { fetchListTrustSource, verifyJws } from "@tamga-network/trust";
const { source } = await fetchListTrustSource("https://trust.tamga.network", httpGet, {
rootFingerprints: PINNED_ROOTS, // from tamga.network/trust-anchor, fixed in your configuration
verifyJws,
});
source.issuers(); // registered institutions
source.relyingParty("x509_san_dns:example.com"); // a verifier's registration and allowed fields
source.isCredentialAcceptable(issuerId, iat); // "YES" | "NO" | "UNKNOWN" — judged on the issue dateA complete, tested version: examples/04-check-institution.
Status
Pre-release (0.1.0) on npm — written and tested; the API may still change before 1.0. Every release is built from this
repository by GitHub Actions and carries npm provenance (verifiable link to the source commit).
Links
- Working examples, run in CI against the real packages:
examples/ - Integration guides and specifications: docs.tamga.network
- Code: Apache-2.0 · Documentation: CC BY 4.0
