{"_id":"@absolutejs/secure-messaging-federation-https","_rev":"3-8d6a212c6af4c9f23b3c683f0e34ca6e","name":"@absolutejs/secure-messaging-federation-https","dist-tags":{"latest":"0.0.3"},"versions":{"0.0.1":{"name":"@absolutejs/secure-messaging-federation-https","version":"0.0.1","author":{"name":"Alex Kahn"},"license":"Apache-2.0","_id":"@absolutejs/secure-messaging-federation-https@0.0.1","maintainers":[{"name":"alexkahndev","email":"alexkahn2019@gmail.com"}],"homepage":"https://github.com/absolutejs/secure-messaging-federation-adapters/tree/main/https","bugs":{"url":"https://github.com/absolutejs/secure-messaging-federation-adapters/issues"},"dist":{"shasum":"dc6e179111dd9c4ef9b27134d256165ae9dff235","tarball":"https://registry.npmjs.org/@absolutejs/secure-messaging-federation-https/-/secure-messaging-federation-https-0.0.1.tgz","fileCount":16,"integrity":"sha512-z2HqqArv2flmhFeix2MLPN74t8Z/vp7VBn2FCHSBa4gen6VKxL6jJPBmGiWRpMo5ByF7fM8RuZKX8irE7SLjUw==","signatures":[{"sig":"MEQCICzpVDtF+S6yc0v3jEyF5emVMdg+7Kge0LnGyXpq/pnzAiAr9Gf+ojahd+A3jM4MWJ4aP/P/jOr+JXCDG4WwCvwq1Q==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":79925},"main":"./dist/index.js","type":"module","types":"./dist/index.d.ts","module":"./dist/index.js","exports":{".":{"types":"./dist/index.d.ts","import":"./dist/index.js","default":"./dist/index.js"},"./manifest":{"types":"./dist/manifest.d.ts","import":"./dist/manifest.js","default":"./dist/manifest.js"},"./manifest.json":"./dist/manifest.json"},"gitHead":"3363e506b978faaf8397f816ea49100de351cc33","scripts":{"test":"bun test tests/","build":"rm -rf dist && bun build src/index.ts src/manifest.ts --outdir dist --root src --sourcemap --target=node --external @absolutejs/secure-messaging-federation --external @absolutejs/manifest --external @sinclair/typebox && tsc --project tsconfig.build.json && absolute-manifest emit","release":"bun run check:package && npm publish --access public","typecheck":"tsc --noEmit","format:check":"prettier --check \"./**/*.{ts,json,md}\"","check:package":"bun run format:check && bun run typecheck && bun run test && bun run build && bun run verify-package","verify-package":"absolute-manifest verify-package"},"_npmUser":{"name":"alexkahndev","email":"alexkahn2019@gmail.com"},"absolutejs":{"manifestContract":2},"repository":{"url":"git+https://github.com/absolutejs/secure-messaging-federation-adapters.git","type":"git","directory":"https"},"_npmVersion":"10.9.2","description":"Hardened HTTPS and mutual-TLS transport adapter for AbsoluteJS secure messaging federation.","directories":{},"_nodeVersion":"22.14.0","dependencies":{"@sinclair/typebox":"^0.34.0","@absolutejs/manifest":"^0.9.0"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"prettier":"^3.9.0","@types/bun":"^1.3.14","typescript":"^5.9.0","@absolutejs/secure-messaging-federation":"0.1.0"},"peerDependencies":{"@absolutejs/secure-messaging-federation":">=0.1.0 <0.2"},"_npmOperationalInternal":{"tmp":"tmp/secure-messaging-federation-https_0.0.1_1787800236446_0.2975195092721281","host":"s3://npm-registry-packages-npm-production"}},"0.0.2":{"name":"@absolutejs/secure-messaging-federation-https","version":"0.0.2","author":{"name":"Alex Kahn"},"license":"Apache-2.0","_id":"@absolutejs/secure-messaging-federation-https@0.0.2","maintainers":[{"name":"alexkahndev","email":"alexkahn2019@gmail.com"}],"homepage":"https://github.com/absolutejs/secure-messaging-federation-adapters/tree/main/https","bugs":{"url":"https://github.com/absolutejs/secure-messaging-federation-adapters/issues"},"dist":{"shasum":"cf165989b89c7b93395c3ea4143aaee4a4e80baf","tarball":"https://registry.npmjs.org/@absolutejs/secure-messaging-federation-https/-/secure-messaging-federation-https-0.0.2.tgz","fileCount":16,"integrity":"sha512-EFLcBRSyxjnkDdclGDLp1j88L6qT5eo5PxxUBNXzP+InR3DF+fqX41oLS3mWphFnJkg4QsrpdPHRy1ANPIOROw==","signatures":[{"sig":"MEQCIAm+kfuelCQcMLc43eEMKxuB4lbDX0stY9kDC6Cd1A51AiBtrW5lnJ+rM7m1O2Sx6bgSzOKYuuITitbmTEg3hp9f5g==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":80036},"main":"./dist/index.js","type":"module","types":"./dist/index.d.ts","module":"./dist/index.js","exports":{".":{"types":"./dist/index.d.ts","import":"./dist/index.js","default":"./dist/index.js"},"./manifest":{"types":"./dist/manifest.d.ts","import":"./dist/manifest.js","default":"./dist/manifest.js"},"./manifest.json":"./dist/manifest.json"},"gitHead":"8e8e3658127935e57316ff80b78fd65c1bbe5489","scripts":{"test":"bun test tests/","build":"rm -rf dist && bun build src/index.ts src/manifest.ts --outdir dist --root src --sourcemap --target=node --external @absolutejs/secure-messaging-federation --external @absolutejs/manifest --external @sinclair/typebox && tsc --project tsconfig.build.json && absolute-manifest emit","release":"bun run check:package && npm publish --access public","typecheck":"tsc --noEmit","format:check":"prettier --check \"./**/*.{ts,json,md}\"","check:package":"bun run format:check && bun run typecheck && bun run test && bun run build && bun run verify-package","verify-package":"absolute-manifest verify-package"},"_npmUser":{"name":"alexkahndev","email":"alexkahn2019@gmail.com"},"absolutejs":{"manifestContract":2},"repository":{"url":"git+https://github.com/absolutejs/secure-messaging-federation-adapters.git","type":"git","directory":"https"},"_npmVersion":"10.9.2","description":"Hardened HTTPS and mutual-TLS transport adapter for AbsoluteJS secure messaging federation.","directories":{},"_nodeVersion":"22.14.0","dependencies":{"@sinclair/typebox":"^0.34.0","@absolutejs/manifest":"^0.9.0"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"prettier":"^3.9.0","@types/bun":"^1.3.14","typescript":"^5.9.0","@absolutejs/secure-messaging-federation":"0.1.0"},"peerDependencies":{"@absolutejs/secure-messaging-federation":">=0.1.0 <0.2"},"_npmOperationalInternal":{"tmp":"tmp/secure-messaging-federation-https_0.0.2_1787805221555_0.6432804534825061","host":"s3://npm-registry-packages-npm-production"}},"0.0.3":{"name":"@absolutejs/secure-messaging-federation-https","version":"0.0.3","description":"Hardened HTTPS and mutual-TLS transport adapter for AbsoluteJS secure messaging federation.","type":"module","license":"Apache-2.0","author":{"name":"Alex Kahn"},"repository":{"type":"git","url":"git+https://github.com/absolutejs/secure-messaging-federation-adapters.git","directory":"https"},"homepage":"https://github.com/absolutejs/secure-messaging-federation-adapters/tree/main/https","bugs":{"url":"https://github.com/absolutejs/secure-messaging-federation-adapters/issues"},"main":"./dist/index.js","module":"./dist/index.js","types":"./dist/index.d.ts","exports":{".":{"types":"./dist/index.d.ts","import":"./dist/index.js","default":"./dist/index.js"},"./manifest":{"types":"./dist/manifest.d.ts","import":"./dist/manifest.js","default":"./dist/manifest.js"},"./manifest.json":"./dist/manifest.json"},"publishConfig":{"access":"public"},"scripts":{"build":"rm -rf dist && bun build src/index.ts src/manifest.ts --outdir dist --root src --sourcemap --target=node --external @absolutejs/secure-messaging-federation --external @absolutejs/manifest --external @sinclair/typebox && tsc --project tsconfig.build.json && absolute-manifest emit","check:package":"bun run format:check && bun run typecheck && bun run test && bun run build && bun run verify-package","format:check":"prettier --check \"./**/*.{ts,json,md}\"","release":"bun run check:package && npm publish --access public","test":"bun test tests/","typecheck":"tsc --noEmit","verify-package":"absolute-manifest verify-package"},"dependencies":{"@absolutejs/manifest":"^0.9.0","@sinclair/typebox":"^0.34.0"},"peerDependencies":{"@absolutejs/secure-messaging-federation":">=0.1.0 <0.2"},"devDependencies":{"@absolutejs/secure-messaging-federation":"0.1.0","@types/bun":"^1.3.14","prettier":"^3.9.0","typescript":"^5.9.0"},"absolutejs":{"manifestContract":2},"_id":"@absolutejs/secure-messaging-federation-https@0.0.3","gitHead":"466515b11a4735e5a7a26bc7856a8e111b670454","_nodeVersion":"22.14.0","_npmVersion":"10.9.2","dist":{"integrity":"sha512-VzF+f5y5ot+vwd28xmo03GFO+AaGLNN1h/Vc4j+C9qTFIQ86bUiVhGdKCuacLCKipELJa61K5Mvj2GRYTTsEWg==","shasum":"c423d724a32a3e3192ab388046d0fe71225810dd","tarball":"https://registry.npmjs.org/@absolutejs/secure-messaging-federation-https/-/secure-messaging-federation-https-0.0.3.tgz","fileCount":16,"unpackedSize":84774,"signatures":[{"keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U","sig":"MEUCIQDN3BKz8cL6NdkPTmOilebSRCZiVy6yhP7UvY+ZpLVj8QIgOEwr+mLzFdLZvQ+0tzOorONUl3qwBZ2oKH9ZX4RiDp8="}]},"_npmUser":{"name":"alexkahndev","email":"alexkahn2019@gmail.com"},"directories":{},"maintainers":[{"name":"alexkahndev","email":"alexkahn2019@gmail.com"}],"_npmOperationalInternal":{"host":"s3://npm-registry-packages-npm-production","tmp":"tmp/secure-messaging-federation-https_0.0.3_1787854990360_0.41096009551444657"},"_hasShrinkwrap":false}},"time":{"created":"2026-08-27T03:10:36.279Z","modified":"2026-08-27T18:23:10.759Z","0.0.1":"2026-08-27T03:10:36.799Z","0.0.2":"2026-08-27T04:33:41.697Z","0.0.3":"2026-08-27T18:23:10.521Z"},"bugs":{"url":"https://github.com/absolutejs/secure-messaging-federation-adapters/issues"},"author":{"name":"Alex Kahn"},"license":"Apache-2.0","homepage":"https://github.com/absolutejs/secure-messaging-federation-adapters/tree/main/https","repository":{"type":"git","url":"git+https://github.com/absolutejs/secure-messaging-federation-adapters.git","directory":"https"},"description":"Hardened HTTPS and mutual-TLS transport adapter for AbsoluteJS secure messaging federation.","maintainers":[{"name":"alexkahndev","email":"alexkahn2019@gmail.com"}],"readme":"# `@absolutejs/secure-messaging-federation-https`\n\nHardened HTTPS transport for `@absolutejs/secure-messaging-federation`.\n\n- Provider discovery is fixed at\n  `/.well-known/absolutejs-secure-messaging-federation`.\n- Delivery is fixed at the advertised protocol path and never follows redirects.\n- The Node/Bun client presents its certificate and key, validates the server CA\n  and DNS identity, pins the resolved addresses for the request, and then\n  enforces advertised SHA-256 certificate rotation pins. Up to 16 addresses are\n  attempted with bounded 250 ms staggering; the first authenticated HTTPS\n  response wins and every remaining attempt is aborted.\n- Private, loopback, link-local, metadata-service, and special-use addresses are\n  rejected by default. `allow-private` is an explicit development/private-mesh\n  mode and must never be enabled for public tenant-controlled domains.\n- Strict bounded batches carry only already-signed federation envelopes.\n\nThe package does not terminate inbound TLS itself. A server or PaaS gateway must\nrequire and validate client certificates, derive `authenticatedPeerDomain` from\nthe verified certificate, and pass that identity to\n`acceptFederationHttpsRequest`. The function checks it against both the request\norigin header and every envelope origin before enqueueing.\n\nThis is the stable AbsoluteJS `ABS-FED-HTTPS-1` transport, not a claim of MIMI\nwire interoperability. MIMI tracking remains in the revision-pinned adapter.\nAddress ordering and staggered connection attempts follow the operational model\nin [RFC 8305](https://www.rfc-editor.org/rfc/rfc8305.html) without performing a\nsecond DNS lookup or weakening certificate identity checks.\n","readmeFilename":"README.md"}