network.attested.signature

johnandersen777.bsky.social View official

{
  "id": "network.attested.signature",
  "defs": {
    "main": {
      "type": "object",
      "required": [
        "key",
        "cid",
        "signature"
      ],
      "properties": {
        "cid": {
          "type": "string",
          "format": "cid",
          "description": "The computed canonical attestation CID (base32 CIDv1) this entry signs."
        },
        "key": {
          "type": "string",
          "description": "did:key public-key reference used to verify the signature."
        },
        "role": {
          "type": "string",
          "description": "Optional role this signature attests in a multi-party workflow (e.g. 'proof-of-settlement', 'broker'), letting verifiers require specific attestation completeness."
        },
        "issuer": {
          "type": "string",
          "format": "did",
          "description": "DID of the signing party (e.g. the did:web of the service holding the key). Verifiers may bind `key` to this DID's document when the authoring account's DID document does not list it."
        },
        "issuedAt": {
          "type": "string",
          "format": "datetime"
        },
        "signature": {
          "type": "bytes",
          "description": "Low-S normalized ECDSA signature over the CID bytes."
        }
      },
      "description": "An inline attestation: an ECDSA signature over a canonical attestation CID, embedded directly in a record's `signatures` array. The CID is computed from the record (signatures stripped), this entry's metadata (cid/signature stripped, `repository` = authoring repo DID added) inserted as $sig, DAG-CBOR + SHA-256 + CIDv1 (dag-cbor codec). Signatures are low-S normalized; supported curves are P-256 and K-256 (did:key). This is the shared network.attested.* vocabulary any speaker can verify."
    },
    "signatures": {
      "type": "array",
      "items": {
        "refs": [
          "network.attested.signature",
          "com.atproto.repo.strongRef"
        ],
        "type": "union"
      },
      "description": "An attestation signatures array: inline network.attested.signature entries and/or strongRefs to remote network.attested.proof records. Always stripped from the record before attestation-CID computation, so attaching attestations never changes the signing payload."
    }
  },
  "$type": "com.atproto.lexicon.schema",
  "lexicon": 1
}

Validate Record

Validate a record against network.attested.signature

Validation Options
Treat any remaining unresolved references as valid

Metadata

DID
did:plc:5svqtrhheairglgiiyvutzik
CID
bafyreiadzaqv2rfql3uf4xnv2dzgfgxsbr665sqg3n5s34d3vylbsx6rii
Indexed At
2026-07-26 20:05 UTC
AT-URI
at://did:plc:5svqtrhheairglgiiyvutzik/com.atproto.lexicon.schema/network.attested.signature

Lexicon Garden

@