Use Hono JWT verification for Extensions assertions - #187
Conversation
Deploying with
|
| Status | Name | Latest Commit | Preview URL | Updated (UTC) |
|---|---|---|---|---|
| ✅ Deployment successful! View logs |
api | 781d22c | Commit Preview URL Branch Preview URL |
Aug 05 2026, 06:13 PM |
There was a problem hiding this comment.
No issues found across 4 files
Requires human review: Introduces acceptance of a previous signing secret for key rotation, altering authentication policy and requiring human review to verify the rotation scheme and security implications.
Re-trigger cubic
There was a problem hiding this comment.
0 issues found across 2 files (changes from recent commits).
Requires human review: Replaces core authentication logic, adds a previous-secret rotation mechanism (ASSERTION_SIGNING_SECRET_PREVIOUS), and enforces stricter claim validation. These security and operational changes require human review to confirm correctness and assess risk.
Re-trigger cubic
Summary