-Public-key based [cm/kem/]s provides sender authentication
-*only* if "/kem/*/from" field is specified. It should contain public
-key's "/data/id", but may be equal to 256-bit zeros, to explicitly
-specify that sender's public key is used, but it is anonymous and
-hidden. It is not specified how recipient should find corresponding
-sender's key that way -- implementation/protocol specific.
+Public-key based [cm/kem/]s provides sender authentication *only* if
+"/kem/*/auth" field is set. "/kem/*/from" field may contain public
+key's "/data/id", otherwise sender is hidden. It is not specified
+how recipient should find corresponding sender's key that way --
+implementation/protocol specific.