pub fn approver_seed(dir: &Path) -> Result<String, String>
The owner device’s approval seed in dir/approver.key, made on first use (0600). One file per machine, shared by the CLI and the desktop app.
dir/approver.key