You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
npm package @superintelligenceco/agent-auth, published with provenance.
install.sh, a curl | sh installer that downloads the right executable from a release.
Documentation site on GitHub Pages with a quickstart, concepts, FAQ, four ADRs, an architecture
diagram and a recorded demo.
Build provenance attestations, SPDX SBOMs and a cosign signature for the image, plus Trivy image
scanning, OpenSSF Scorecard, dependency review, actionlint and link checking.
Benchmark gate, nightly suite and scheduled mutation testing.
Makefile, pre-commit hooks, dev container, editor settings, CITATION.cff and llms.txt.
Multi-arch (linux/amd64, linux/arm64) server image on ghcr.io/superintelligenceco/agent-auth, tagged :vX.Y.Z and :latest on releases and :edge
and :sha-<commit> on manual builds.
Standalone agent-auth executables for Linux x64, Linux arm64, macOS arm64 and Windows x64, built
with Bun, and the npm package tarball, attached to each GitHub Release with SHA256SUMS.
agent-auth --version.
scripts/smoke.sh, a grant, check, revoke and audit check against a running server.
Changed
openDatabase() uses Bun's built-in bun:sqlite driver when it runs on Bun.
Releases come from pushed v* tags instead of release-please.
Fixed
The SDK client and onlineVerifier() trim trailing slashes from baseUrl in linear time.
loadOrCreateSigningKey() no longer races with another process that creates the key file at the
same time; the later process loads the key the first one wrote.