Tag: ssh-signing
All the articles with the tag "ssh-signing".
-
Co-authored-by is a Lie: Cryptographic Provenance for AI Coding Agents
Every AI coding agent signs its commits with a forgeable plain-text line. I gave each of mine a non-exportable key in the Mac's Secure Enclave, hook-enforced, with a verifier that flags forgery — here's the build.