Dev Tools
Dev Tools is a small command-line toolkit for contributors to Project Enclave. It currently provides signed SHA256 manifests for release files.
Installation
Install the current public release with pipx:
pipx install "git+https://github.com/Chinglen2080/dev-tools.git@v0.1.1"
OpenSSL must be installed and available on your PATH for key generation and signing.
Signing release files
Generate a 2048-bit RSA key pair the first time you use the signing tool:
tools sign --init
The keys are stored in ~/.config/dev-tools/keys/. Keep private.pem private; distribute public.pem to anyone who needs to verify your releases. If keys already exist, initialization asks before replacing them.
From the release directory, create or update the manifest and signature:
tools sign
The manifest contains SHA256 hashes for .py, .json, .yaml, .yml, .toml, .txt, and .md files. Hidden files and common generated directories are skipped. Commit manifest.json and manifest.sig with the release.
To sign or verify a different directory, pass it with --directory (or -C):
tools sign --directory ./release
tools sign --verify -C ./release
Verification checks the signature, each listed file's hash, missing files, and any new signable files that are absent from the manifest.
License
This tool is provided under the GNU General Public License v3.0.
Metadata
Release files for project-enclave-tools 0.1.1
For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.
Source distribution (sdist)
| File | Size | Uploaded | |
|---|---|---|---|
| project_enclave_tools-0.1.1.tar.gz | 7.2 kB | Details |
Built distribution (wheel)
| File | Interpreter | ABI | Platform | Reset |
|---|---|---|---|---|
| project_enclave_tools-0.1.1-py3-none-any.whl | Python 3 | none | any | Details |
Total release size: 15.3 kB
Release files / project_enclave_tools-0.1.1.tar.gz
| Download URL | project_enclave_tools-0.1.1.tar.gz |
|---|---|
| Size | 7.2 kB |
| Tags | Source |
|
SHA-256 checksum How to use checksums |
4e400b6f992675ff697a6c0894fc72ff67dd045bdbdf386908ebad9f8da1c078
|
|
BLAKE2b-256 checksum How to use checksums |
f0a6e53cab9273abb18fd713cebdc84a8319e479aa95845bd0d6585fdf30e54a
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
Yes |
| Uploaded via |
twine/7.0.0 CPython/3.13.14
|
Provenance
Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.
PyPI Publish Attestation
PyPI verified that this artifact, at this checksum, originated from the publisher listed below.
Signed by GitHub Actions, verified by PyPI on Oct 2, 2026.
Transparency logRelease files / project_enclave_tools-0.1.1-py3-none-any.whl
| Download URL | project_enclave_tools-0.1.1-py3-none-any.whl |
|---|---|
| Size | 8.0 kB |
| Tags | Python 3 |
|
SHA-256 checksum How to use checksums |
b9fb2cf32fc87435caa5a26a345299eaf50f06c678fcfda6444e923dea78d423
|
|
BLAKE2b-256 checksum How to use checksums |
5858f7afbbc248d29c195e812f2bdfb0a9ca0416441d4d04bb96076e9715a59f
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
Yes |
| Uploaded via |
twine/7.0.0 CPython/3.13.14
|
Provenance
Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.
PyPI Publish Attestation
PyPI verified that this artifact, at this checksum, originated from the publisher listed below.
Signed by GitHub Actions, verified by PyPI on Oct 2, 2026.
Transparency log