Skip to main content
The offline verifiers return a result instead of throwing. Read valid for the decision and errors for the reasons. Each reason is one of the messages below.

Deciding what to accept

  • valid: true means every check that applies passed.
  • valid: false with only key or format errors means the record could not be checked. That is not the same as tampered, but it is not verified either.
  • For hybrid records, also require hybridSignaturesValid === true if your policy needs the post-quantum signature. See Requiring hybrid signatures.

Exceptions

The verifiers do not throw for bad records or keys. Exceptions come only from the signing primitives, which throw CryptoError when a key does not match the provider.