Https:// issue

Why your debugging tool says that the signature is verifies with any secret put in the secrete field? Do I misunderstand something about how signature verification works?

I saw a problem. When I type in the secrete you change the signature rather than verify it. Not sure it is the right UX decision.

