notaryproject / notation-go

A collection of libraries for supporting sign and verify OCI artifacts. Based on Notary Project specifications.

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

Verify JWS header content

shizhMSFT opened this issue · comments

The content of JWS header is not verified including the cty and crit fields.
We need to verify those fields in case we have different types of payload.

closing with the note above