2024-06-12 UTC
thepaperpilot For writing up the proposal, I was thinking about how to handle declaring what content is actually being signed. I think it would be best to have it sign the raw html, meaning if any replicator transforms the content, they'll need to somehow also provide the original html to clients so they can independently verify the signature. The signature block naturally could not be contained within the content being signed, so I was