Ships the Prism FR (encrypted-profile-storage-v4.9.md) as a generic relay-side encrypted blob primitive: deterministically-located, AEAD-sealed blobs keyed by a 32-byte slotId derived client-side via HKDF from the user's master key. Unlocks credential-only bootstrap of new devices into existing E2EE state — no QR, no physical access. Server: BlobStore interface + Memory/Sqlite/Postgres impls, createBlobRoutes for GET/PUT/DELETE /v1/blob/:slotId with TOFU pubkey auth and If-Match CAS (409/412 semantics). Mounted on the same Hono app as the inbox; SHADE_BLOB_PG_URL / SHADE_BLOB_DB_PATH / SHADE_DISABLE_BLOB env-var plumbing in standalone. SDK: createProfileNamespace high-level wrapper (HKDF derivation, random-nonce AEAD seal, slotId-bound AAD) + low-level BlobClient. Cross-platform test vectors in test-vectors/blob-storage.json. New errors: ConflictError (409), PreconditionFailedError (412). Co-Authored-By: Claude Opus 4.7 (1M context) <noreply@anthropic.com>
54 lines
983 B
TypeScript
54 lines
983 B
TypeScript
export {
|
|
InboxClient,
|
|
decodeFetchedEnvelope,
|
|
} from './client.js';
|
|
export type {
|
|
InboxClientOptions,
|
|
PutResult,
|
|
FetchedBlob,
|
|
FetchResult,
|
|
} from './client.js';
|
|
|
|
export {
|
|
Inbox,
|
|
} from './inbox.js';
|
|
export type {
|
|
InboxOptions,
|
|
DecryptHandler,
|
|
} from './inbox.js';
|
|
|
|
export {
|
|
MemoryOutgoingQueueStore,
|
|
} from './queue-store.js';
|
|
export type {
|
|
OutgoingEntry,
|
|
OutgoingQueueStore,
|
|
} from './queue-store.js';
|
|
|
|
export {
|
|
MemoryCursorStore,
|
|
} from './cursor-store.js';
|
|
export type {
|
|
CursorStore,
|
|
} from './cursor-store.js';
|
|
|
|
export {
|
|
InboxClientEvents,
|
|
} from './events.js';
|
|
export type {
|
|
InboxClientEvent,
|
|
InboxClientEventName,
|
|
InboxClientEventMap,
|
|
InboxClientListener,
|
|
} from './events.js';
|
|
|
|
export { computeMsgId } from './msg-id.js';
|
|
|
|
// V4.9 — encrypted-blob primitive (`/v1/blob/<slotId>`).
|
|
export { BlobClient, slotIdToHex } from './blob-client.js';
|
|
export type {
|
|
BlobClientOptions,
|
|
BlobGetResult,
|
|
BlobPutResult,
|
|
} from './blob-client.js';
|