Skip to content

Commit e0d9b45

Browse files
committed
readme
1 parent e0dd028 commit e0d9b45

File tree

1 file changed

+2
-0
lines changed

1 file changed

+2
-0
lines changed

README.md

+2
Original file line numberDiff line numberDiff line change
@@ -734,6 +734,8 @@ Use low-level libraries & languages.
734734

735735
- **Commits** are signed with PGP keys, to prevent forgery. Make sure to verify commit signatures
736736
- **Releases** are transparent and built on GitHub CI. Make sure to verify [provenance](https://docs.npmjs.com/generating-provenance-statements) logs
737+
- Use GitHub CLI to verify single-file builds:
738+
`gh attestation verify --owner paulmillr noble-curves.js`
737739
- **Rare releasing** is followed to ensure less re-audit need for end-users
738740
- **Dependencies** are minimized and locked-down: any dependency could get hacked and users will be downloading malware with every install.
739741
- We make sure to use as few dependencies as possible

0 commit comments

Comments
 (0)