pub fn load(path: &Path) -> Option<SupporterRecord>Expand description
Read the supporter record from disk. Returns None if the file is
missing, malformed, larger than MAX_FILE_BYTES, or carries a
signature that doesn’t verify under the current HMAC key. Records
with an empty signature (written by app versions before HMAC
binding shipped) parse but record_is_active will require the next
online validation to re-sign before granting supporter status.