DocFence 0.45.0
Static package-signature coverage now requires the bounded XMLDSIG Reference child sequence before a bound manifest declaration is credited: optional direct ds:Transforms, one ds:DigestMethod with a nonblank Algorithm, and one direct attribute-free, child-free, nonempty ds:DigestValue, with no non-whitespace direct text. Missing, misordered, malformed, and extra direct children remain aggregate unsupported references.
This remains a bounded structural declaration audit. DocFence does not parse, decode, or recompute digest values; execute transforms; validate a signature or certificate; establish trust; or predict Office client behavior.
Artifact SHA-256:
- docfence-0.45.0-py3-none-any.whl: 2330d04071da5fbab3fadb39139f24e2776372418329496a1f05e5f741743a49
- docfence-0.45.0.tar.gz: d8b0d71c2241354b6cd0b99bdc3396e186c6b8bcfe3663b21ef078a8f9c7184b