On login (for new clients), we persist signedIdentityKeysBlob in the signed_identity_keys column of the cookies table.
Next up is handling SIWE on web. Then will handle the native client. Then will add some validation regex tests just to make things a bit more robust.