Skip to content

Conversation

@leeland-turnkey
Copy link
Contributor

Remove nacl and tweetnacl-util package and replace those functions with @noble/ed25519 and @noble/hashes/sha512. I wasn't sure what the best way to confirm they are the same. I console.log both the previous signature and the new one and they came out the same.

All tests are passing

Screenshot 2025-12-15 at 11 30 02 AM

const signature = nacl.sign.detached(messageBytes, keypair.secretKey);

// Set up sha512 for nobleEd25519 (required for signing)
nobleEd25519.etc.sha512Sync = (...m) =>
Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

tiny nit: can we rename this variable (...m) for clarity?

Copy link
Contributor Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

fair, not pinning this on you

@leeland-turnkey leeland-turnkey merged commit d1f08b0 into main Dec 17, 2025
9 checks passed
@leeland-turnkey leeland-turnkey deleted the leeland/eng-2791-tob-58-dependencies-of-the-export-and-sign-are-not-minimal branch December 17, 2025 22:50
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants