Skip to content

Add crit (Critical) header parameter validation per RFC 7516 §4.1.13#46

Open
ydah wants to merge 1 commit intojwt:masterfrom
ydah:crit
Open

Add crit (Critical) header parameter validation per RFC 7516 §4.1.13#46
ydah wants to merge 1 commit intojwt:masterfrom
ydah:crit

Conversation

@ydah
Copy link

@ydah ydah commented Jan 29, 2026

Summary

Implements crit (Critical) header parameter validation as defined in RFC 7516 Section 4.1.13.

Usage

# Configure supported critical headers
JWE.supported_critical_headers = ['custom-header']

# Encrypt with critical header
encrypted = JWE.encrypt(payload, key, crit: ['custom-header'], 'custom-header': 'value')

# Decrypt (validates crit automatically)
decrypted = JWE.decrypt(encrypted, key)

References

## Summary

Implements `crit` (Critical) header parameter validation as defined in RFC 7516 Section 4.1.13.

## Usage

```ruby
# Configure supported critical headers
JWE.supported_critical_headers = ['custom-header']

# Encrypt with critical header
encrypted = JWE.encrypt(payload, key, crit: ['custom-header'], 'custom-header': 'value')

# Decrypt (validates crit automatically)
decrypted = JWE.decrypt(encrypted, key)
```

## References

- [RFC 7516 §4.1.13](https://datatracker.ietf.org/doc/html/rfc7516#section-4.1.13)
- [RFC 7515 §4.1.11](https://datatracker.ietf.org/doc/html/rfc7515#section-4.1.11)
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant