{"issuer":"predge.io","version":"predge-attest-v1","keys":[{"kid":"13fa3d18a369e6c7","algorithm":"ed25519","public_key":"13fa3d18a369e6c71bf941563ba47822b30182273d5106a0e8fb61c5016352d9","active":true,"role":"attestation"},{"kid":"a122cc095c0f7fe5","algorithm":"ed25519","public_key":"a122cc095c0f7fe52645be73dd496498a2d10f7018e85db2f9d721f0a3d997e4","active":true,"role":"cachet-oracle"}],"verify":"ed25519: verify `signature` (hex, 64 bytes) over the UTF-8 bytes of `canonical` using `public_key` (hex, raw 32-byte ed25519 point). `canonical` is the exact byte string that was signed — JSON with keys sorted lexicographically at every level and no insignificant whitespace (a subset of RFC 8785 / JCS). `payload` is the same object parsed; re-canonicalise it and you MUST reproduce `canonical`."}