Sean Whitton <spwhit...@spwhitton.name> writes:

> +The value is of the form ``tag=TAGOBJID fp=FINGERPRINT`` where ``TAGOBJID`` 
> is
> +the Git object ID of the Git tag object, and ``FINGERPRINT`` is the
> +fingerprint (in hexadecimal, without spaces) of the PGP key used to sign the
> +Git tag.

What restrictions on the formats of TAGOBJID and/or FINGERPRINT are
implicit here?

Do consumers of this field have to handle both SHA1 and SHA256 git
object ids?

OpenPGP v5 or v6 fingerprint?

How are they supposed to behave if they cannot understand parts of the
information in the header?

/Simon

Attachment: signature.asc
Description: PGP signature

Reply via email to