Added
- Portable
technocore-signed-message-receipt-v1JSON output containing the public DID, canonical signed fields, signature, and observed record location. - Dependency-free offline receipt verification with
npm run verify-receipt -- <receipt.json>. - Explicit Action outputs for canonical text and public signature.
- Tamper-detection tests and documentation distinguishing signed fields from unsigned server observations.
Verification
- Tag CI: https://github.com/hazzanzico/technocore-signed-action/actions/runs/32947162508
- Main CI: https://github.com/hazzanzico/technocore-signed-action/actions/runs/32947089807
The Ed25519 seed remains local to the runner and is never included in the receipt or Action outputs.