Skip to main content
The current CLI can verify and install a signed offline license against the local deployment identity. Verify without installing:
Install after verification:
The verifier uses an Ed25519 public-key keyring, validates the license against the durable deployment ID and current time, and reports the license ID and validity timestamp. Installed material is stored under /etc/leamout/license/ with restrictive permissions.
The keyring is trust material. Obtain it through a signed release channel or another authenticated out-of-band channel. A keyring delivered by the same untrusted source as a license artifact does not establish authenticity.