Release v0.13.0#215
Closed
hypercerts-release-bot[bot] wants to merge 2 commits into
Closed
Conversation
hypercerts-release-bot
Bot
force-pushed
the
changeset-release/main
branch
from
May 21, 2026 16:59
557536e to
43119ab
Compare
There was a problem hiding this comment.
Claude Code Review
This repository is configured for manual code reviews. Comment @claude review to trigger a review and subscribe this PR to future pushes, or @claude review once for a one-time review.
Tip: disable this comment in your organization's Code Review settings.
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
This PR was opened by the Changesets release GitHub action. When you're ready to do a release, you can merge this and the packages will be published to npm automatically. If you're not ready to do a release yet, that's fine, whenever you add more changesets to main, this PR will be updated.
Releases
@hypercerts-org/lexicon@0.13.0
Minor Changes
#209
8ec051fThanks @s-adamantine! - Addapp.certified.graph.followlexicon — a social-graph follow record schema-compatible withapp.bsky.graph.follow(sametidkey, samesubject/createdAt/ optionalviastrongRef fields). Exports newGRAPH_FOLLOW_NSID,GRAPH_FOLLOW_LEXICON_JSON,GRAPH_FOLLOW_LEXICON_DOC, andAppCertifiedGraphFollowtype namespace.#170
97981bdThanks @satyam-mishra-pce! - Add cryptographic signature support to all lexiconsAdds optional cryptographic signature support to all record lexicons, enabling platform attestation and verification that records were created through trusted services. The on-the-wire shape, signing procedure, and verification procedure all conform to Nick Gerakines' ATProtocol Attestation Specification (see also the accompanying blog post).
New lexicons:
app.certified.signature.defs- Shared type definitions for signatures. Provides:#list- open union array of inline signatures andcom.atproto.repo.strongRefreferences to remote proofs#inline- inline signature object with two required fields:signature(ECDSA bytes, low-S per BIP-0062, signing the record's CID) andkey(DID verification method reference). The signing curve is determined by the multicodec prefix on the verification method'spublicKeyMultibase, so no separate algorithm-tag field is carried on the signature itself.app.certified.signature.proof- Remote attestation proof record containing the CID of the attested content (computed with the spec's$sig-repository binding).Changes to existing lexicons:
All 21 record lexicons now include an optional
signaturesproperty (a ref toapp.certified.signature.defs#list) placed directly on the record with no wrapper object:org.hypercerts.claim.activityorg.hypercerts.claim.contributionorg.hypercerts.claim.contributorInformationorg.hypercerts.claim.rightsorg.hypercerts.collectionorg.hypercerts.context.acknowledgementorg.hypercerts.context.attachmentorg.hypercerts.context.evaluationorg.hypercerts.context.measurementorg.hypercerts.funding.receiptorg.hypercerts.workscope.tagorg.hyperboards.boardorg.hyperboards.displayProfileapp.certified.badge.awardapp.certified.badge.definitionapp.certified.badge.responseapp.certified.actor.profileapp.certified.actor.organizationapp.certified.locationapp.certified.graph.followapp.certified.link.evmNote on
app.certified.link.evm: this record carries two orthogonal integrity primitives. The EIP-712prooffield proves wallet consent (the EVM key holder agreed to be linked to the DID). Thesignaturesarray proves record provenance (e.g. that a platform UI minted the record, defending against replay of harvested EIP-712 signatures). Both are useful and they do not conflict.Design notes:
This is a non-breaking extension - signatures are optional on all records. Two signature patterns are supported:
app.certified.signature.defs#inline.com.atproto.repo.strongRef.Patch Changes
80e5b42Thanks @s-adamantine! - Clarify thatknownValuesis an open vocabulary, not a closed enum. Adds a "Schema Conventions" section to README.md explaining that custom string values are permitted on anyknownValuesfield (and contrasting withenum, which is closed and validator-enforced). Updates inline descriptions onapp.certified.location#locationType,org.hypercerts.workscope.tag#category, andorg.hypercerts.workscope.tag#statusto explicitly note that values beyond the listed set are permitted — bringing them in line with the existing wording onorg.hypercerts.collection#type,org.hypercerts.context.attachment#contentType, andapp.certified.badge.definition#badgeType. ThelocationTypedescription now also explicitly calls out that polygons / multipolygons / featurecollections use the catch-allgeojsonentry rather than a typed variant. Fixes a misleading line in STRING_CONSTRAINTS.md that conflatedknownValueswithenum. Documentation-only — no schema or type changes.