







Extract an archive's commit object, resolve its public key, and verify its signature.
atproto CAR signature verifier
drop a CAR file, see if its signature can be verified
A DEVELOPER MADE A REAL COMMIT WITHOUT EVER TYPING GIT ADD OR GIT COMMIT -- JUST TO PROVE THE COMMANDS YOU LIVE BY ARE A THIN SHELL OVER A DATABASE YOU'VE NEVER ONCE OPENED 55 minutes from Tim Berglund, a longtime Git teacher and GitHub evangelist, taking the tool apart down to https://t.co/vJNRCmSBb9
A DEVELOPER MADE A REAL COMMIT WITHOUT EVER TYPING GIT ADD OR GIT COMMIT -- JUST TO PROVE THE COMMANDS YOU LIVE BY ARE A THIN SHELL OVER A DATABASE YOU'VE NEVER ONCE OPENED55 minutes from Tim Berglund, a longtime Git teacher and GitHub evangelist, taking the tool apart down to… https://t.co/z8Tf4udInA pic.twitter.com/vJNRCmSBb9— slash1s (@slash1sol) June 4, 2026
Keytrace — One identity, many proofs.
Link your GitHub, domain, and other accounts to your internet handle. Cryptographically signed, user-owned, and portable.
com.atproto.repo.createRecord | Bluesky
*This endpoint is part of the atproto PDS repository management APIs. Requests usually require authentication (unlike the `com.atproto.sync.*` endpoints), and are made directly to the user's own PDS instance.*

Git: The complete guide to sign your commits with an SSH key
Please read the introduction I wrote about why signing your git commits ...

Link your GitHub, domain, and other accounts to your Bluesky identity. Cryptographically signed, user-owned, and portable.
GitHub MCP Exploited: Accessing private repositories via MCP
We showcase a critical vulnerability with the official GitHub MCP server, allowing attackers to access private repository data. The vulnerability is among the first discovered by Invariant's security analyzer for detecting toxic agent flows.

[PROPOSED WORK ITEM] DID-KR Key Recovery Extension as a CCG Work Item · Issue #256 · w3c-ccg/community
New Work Item Proposal: DID Key Recovery (DID-KR) Link to Abstract or Draft GitHub Repository: https://github.com/sirraya-labs/did-kr Rendered HTML Specification: https://sirraya-labs.github.io/did...
com.atproto.repo.listRecords | Bluesky
*This endpoint is part of the atproto PDS repository management APIs. Requests usually require authentication (unlike the `com.atproto.sync.*` endpoints), and are made directly to the user's own PDS instance.*

Incorporating Archives
Ready to make it official? Here you’ll find guides, samples and examples to make the process a bit easier.
GitHub - FiloSottile/bsky-backup-template: Template repository for setting up a new ATProto repository backup using GitHub Actions.
Template repository for setting up a new ATProto repository backup using GitHub Actions. - FiloSottile/bsky-backup-template
Tutorial: Introduction to Formal Verification with Lean (Part 1) - HashCloak
A tutorial Formal Verification using Lean for cryptographic engineers. Implement and prove correctness of the One-Time pad following a cryptography book.
TLDR in English Just did an automation using @airglow.run that will save me so much work from now on Every tangled repo I give a star will now be saved into my @semble.so collection for atproto-related repos, using the permanent URL
Victoria
Mal conheço o Airglow e já considero PACAS Acabei de fazer uma automação que vai me poupar um trabalhão Todo repositório do Tangled que eu dar uma estrela, vai ser automaticamente salvo numa coleção do Semble, E USANDO URL PERMANENTE (que usa DID e não handle)!!!!! airglow.run/u/vicwalker.dev.br/3ml5ixicbo…
Blink: Intent to Experiment: Signature-based Integrity
Blink: Intent to Experiment: Signature-based Integrity
groups.google.comcould hack the overleaf editor/backend with an alternative save function so it saves to PDS instead of github for example or pulls from something like @semble.so or @chive.pub instead of zotero for citations... actually the more I think about this, it actually sounds like a good idea