Stas Skipper
  • My pronounces are: your/fucking/boss

  • Joined on 2025-09-03
Skipper pushed to main at MarketTakers/arbiter 2026-04-07 19:26:57 +00:00
f3cf6a9438 Merge pull request 'Post-quantum crypto and better useragent security' (#80) from push-xrxykvkuxpsv into main
a9f9fc2a9d housekeeping(server): fixed clippy warns
d22ab49e3d refactor(server): moved shared module crypto into arbiter-crypto
a845181ef6 docs: ml-dsa scheme everywhere
0d424f3afc refactor(server): migrated auth to ml-dsa
Compare 5 commits »
Skipper merged pull request MarketTakers/arbiter#80 2026-04-07 19:26:55 +00:00
Post-quantum crypto and better useragent security
Skipper closed issue MarketTakers/arbiter#58 2026-04-07 19:04:05 +00:00
Client key is not integrity-protected
Skipper pushed to push-xrxykvkuxpsv at MarketTakers/arbiter 2026-04-07 15:35:05 +00:00
a9f9fc2a9d housekeeping(server): fixed clippy warns
d22ab49e3d refactor(server): moved shared module crypto into arbiter-crypto
Compare 2 commits »
Skipper created pull request MarketTakers/arbiter#80 2026-04-07 13:40:31 +00:00
WIP: Post-quantum crypto and better useragent security
Skipper created branch push-xrxykvkuxpsv in MarketTakers/arbiter 2026-04-07 13:40:13 +00:00
Skipper pushed to push-xrxykvkuxpsv at MarketTakers/arbiter 2026-04-07 13:40:13 +00:00
a845181ef6 docs: ml-dsa scheme everywhere
0d424f3afc refactor(server): migrated auth to ml-dsa
Compare 2 commits »
Skipper opened issue MarketTakers/arbiter#79 2026-04-07 08:09:46 +00:00
Not using quantum-resistant schemes
Skipper closed issue MarketTakers/arbiter#72 2026-04-06 16:34:01 +00:00
Bootstrap token comparison is not constant-time
Skipper pushed to main at MarketTakers/arbiter 2026-04-06 16:33:58 +00:00
1497884ce6 fix(server::bootsrapper): token compare is now constant-time
Skipper closed issue MarketTakers/arbiter#61 2026-04-06 16:27:28 +00:00
User-agent auth accepts integrity-unavailable state while sealed
Skipper commented on issue MarketTakers/arbiter#61 2026-04-06 16:27:28 +00:00
User-agent auth accepts integrity-unavailable state while sealed

Currently it's intended behaviour, because vault could be sealed and verification couldn't be performed

Skipper closed issue MarketTakers/arbiter#55 2026-04-06 16:26:33 +00:00
Client identity rebinding
Skipper commented on issue MarketTakers/arbiter#55 2026-04-06 16:26:33 +00:00
Client identity rebinding

#78

Skipper merged pull request MarketTakers/arbiter#78 2026-04-06 16:26:12 +00:00
feat(server): add integrity verification for client keys
Skipper deleted branch push-woktoqvkklwr from MarketTakers/arbiter 2026-04-06 16:26:12 +00:00
Skipper pushed to main at MarketTakers/arbiter 2026-04-06 16:26:12 +00:00
b3464cf8a6 tests(server::client::auth): integrity envelope insertion for valid paths
46d1318b6f feat(server): add integrity verification for client keys
Compare 2 commits »
Skipper created pull request MarketTakers/arbiter#78 2026-04-06 16:24:36 +00:00
feat(server): add integrity verification for client keys
Skipper pushed to push-woktoqvkklwr at MarketTakers/arbiter 2026-04-06 16:24:23 +00:00
b3464cf8a6 tests(server::client::auth): integrity envelope insertion for valid paths
46d1318b6f feat(server): add integrity verification for client keys
Compare 2 commits »
Skipper created branch push-woktoqvkklwr in MarketTakers/arbiter 2026-04-06 16:24:23 +00:00