Skip to main content
Use these helpers after you have fetched a response signature and verified the applicable preflight attestation. They verify only the signed response: exact-byte hashes, the signature, and the signer match. They do not verify a quote or choose which preflight evidence applies. Pass the signature JSON, the exact request and response bytes, the expected signed text for the endpoint, and the signer from the already verified preflight report:
The endpoint pages define the expected text and which preflight report to use:
Install ethers v6 and tweetnacl, and save the code as an ES module (a .mjs file, or set "type": "module" in package.json):