tiny-secp256k1 icon indicating copy to clipboard operation
tiny-secp256k1 copied to clipboard

[NOTE] Regarding packaging trust

Open junderw opened this issue 3 years ago • 0 comments

Github Actions CI is building the packages on npm

  • Starting with recent versions (I think v2.2.0)
  • Github Actions CI logs for the tagged commit will show the npm pack command output.
  • There you can verify the package hash etc. matches the integrity hash on your lock file.
  • I have not automated the publishing. I will be downloading the artifact from Github, then publishing it directly from my local PC. (verifying the hash before entering my 2FA)

junderw avatar Feb 22 '22 07:02 junderw