Kwker's license-signing key
Check it with gpg
Download the key once and import it:
gpg --import licenses.asc
gpg --fingerprint licenses@kwker.io
The fingerprint gpg prints must be the one on this page. Then check a license:
gpg --verify kwker-license-KWK-XXXX-XXXX-XXXX-XXXX.txt.asc kwker-license-KWK-XXXX-XXXX-XXXX-XXXX.txt
A genuine license gives Good signature from "Kwker licenses <licenses@kwker.io>" and the primary key fingerprint from this page. Any change to the license file, even one character, gives BAD signature. gpg also warns that the key is not certified with a trusted signature: that is normal, and is why you compare the fingerprint yourself.
The license file names the company, its revenue band and the dates it is valid. It is valid from the first day to the last day it lists, both included.
Check it with kwker-license
Kwker's own checker, kwker-license verify, ships with the 0.1.0 release. It runs the same checks with the
key built in and also reads the license for you: who it is for, and whether it is valid today.
kwker-license verify kwker-license-KWK-XXXX-XXXX-XXXX-XXXX.txt
Buying and downloading licenses
Licenses are bought and downloaded from your account. See pricing for who needs one.