CATEGORY
Cryptography 6,603 crates
Data as of 2026-07-25 (crates.io database dump, timestamp 2026-07-25T02:00:36Z). Source: crates.io · db-dump.tar.gz · methodology & corrections.
shamir-algorithmA Rust implementation of Shamir's Secret Sharing algorithm using Galois Field arithmetic over GF(256)97MIT
happy-crackingA fast, comprehensive CTF toolkit for cryptographic encoding/decoding, classic ciphers, hash operations, and analysis tools97MIT
saluscThe command line client for the salusd daemon97MIT OR Apache-2.0
cripto_endevs_comunityUn micro-módulo de cifrado excéntrico y seguro basado en AES-GCM con sistema de Ratcheting.97MIT OR Apache-2.0
jis-coreJIS Core - Cryptographic identity where intent comes first. jis: URIs, .aint domains, TIBET provenance.97MIT OR Apache-2.0
scp-runtimeCore protocol implementation for SCP (Shared Context Protocol)97Apache-2.0
basilClient library for Basil, the host-local secrets broker: your app never touches the key.97Apache-2.0
icefastA optimized parallel ICE encryption implementation with auto-dispatching logic and auto-vectorization.96Unlicense
chaser-gtHigh-performance Geetest v4 captcha solver with automatic deobfuscation96MIT
hashcrackerGPU-accelerated password cracker — 42 hash types, Vulkan/Metal/DX12, single binary96MIT
sumchain-cryptoCryptographic operations for SUM Chain (an L1 blockchain): Ed25519 keypairs / signatures, BLAKE3 hashing, and the X25519 +…96MIT OR Apache-2.0
oxivSecure local CLI vault for sensitive data — AES-256-GCM encrypted, Argon2id key derivation. Sync server, browser extension,…96MIT
cat-tokenImplementation of CTA-5007-B Common Access Token specification96BSD-2-Clause
logdbEmbedded, append-only, crash-recoverable, optionally tamper-proof local log database96Apache-2.0
soroban-zk-stdA high-performance cryptographic standard library for Stellar Protocol 25 ZK-Primitives.96Apache-2.0
hyde-macrosProcedural macros for Hyde (#[hyde::protect])96MIT
sqep-liteSQEP Lite — ZeroshieldCipher: a modern AEAD+HKDF cryptography primitive.95MIT
solvela-x402Rust implementation of the x402 payment protocol — Solana verification, escrow integration, fee payer pool, nonce pool. Powers…95MIT
aerocred-issuerBootstrap issuer: bind a holder key to FAA-sourced claims and mint an SD-JWT VC95Apache-2.0
mceliece348864Thin wrapper for classic-mceliece-rust with mceliece348864 parameter set95Apache-2.0
gmssl-rsSafe, idiomatic Rust wrapper for the GmSSL cryptographic library (SM2/SM3/SM4/SM9/ZUC/X.509)94Apache-2.0
rskrb5Pure-Rust Kerberos v5 client/service library with HTTP Negotiate support.94Apache-2.0
vex-verifyLightweight cryptographic verification engine for the VEX protocol94Apache-2.0
cryptaGestor de secretos moderno escrito en Rust puro, compatible con SOPS/Age para encriptación de secretos y sincronización…94MIT
p3q-starkP3Q STARK arithmetisation (AIR) traits for the strict-PQ Plonky3 fork.94MIT OR Apache-2.0
wgpu-sha1GPU-accelerated SHA1 hashing using wgpu compute shaders94MIT
lambda-shieldA lightweight, energy-efficient stream cipher based on the Collatz Lemma 3 residue discovery.94MIT
libsessionSession messenger core library - cryptography, config management, networking94GPL-3.0-only
ghostkey-commonWire types for communicating with the Freenet ghostkey delegate (GhostkeyRequest/GhostkeyResponse). Use this crate from a Freenet…93MIT OR Apache-2.0
genshi-solanaSolana BPF verifier for the genshi framework via sol_alt_bn128_* syscalls93MIT OR Apache-2.0
aerocred-verifierVerify an SD-JWT VC presentation against a trust-anchor set and decide purpose-scoped eligibility93Apache-2.0
hyde-softwareSoftware-only fallback backend for Hyde93MIT
ssignCross-platform CLI to Authenticode-sign Windows binaries with a Certum SimplySign cloud certificate — no GUI, no vendor stack.93MIT
ssh-tresorEncrypt and decrypt secrets using SSH agent keys92MIT OR Apache-2.0
harmonia-vaultEncrypted secret vault with SQLite backend for the Harmonia agent92MIT
aitpAgent Identity & Trust Protocol — facade crate re-exporting the protocol crates92MIT OR Apache-2.0
nvlpEncrypt files to GitHub users via their SSH keys92MIT
zerodds-secure-permissionsZeroDDS DDS-Security tooling — CMS/PKCS#7 sign governance & permissions XML for the builtin AccessControl plugin.92Apache-2.0
mcu-comms-macrosAn internal procedural macro library for `mcu-comms` that provides the `#[payload]` macro.92Apache-2.0
noxy-sdkDecision Layer SDK for AI agents. Encrypted actionable decisions over gRPC.91MIT
sc_drbgSubset Counter-Based Deterministic Random Bit Generator91MIT
password_Simple and secure password hashing library based on Argon2 / 基于 Argon2 的简单安全密码哈希库91MulanPSL-2.0
merkle-spineMerkle Spine — the structural core: canonicalization (collapse + promotion), the proof spine, inclusion and leaf proofs, and the…91non-standard
krusty-kms-wasmWASM bindings for TONGO confidential transaction SDK91MIT OR Apache-2.0
ntag424Implementation of the application protocol of NTAG 424 DNA chips.91MIT OR Apache-2.0
stellar-agent-headless-keyringOpt-in file-backed keyring store for headless deployments (Windows service/SSH/CI, Linux services) where the platform keyring is…91Apache-2.0
mkit-transport-encEncrypted-stream transport for mkit, layering mkit-rpc SshFrame on top of commonware-stream::encrypted (ChaCha20-Poly1305,…90MIT OR Apache-2.0
ans-verifyANS Trust Verification library for the Agent Name Service90MIT
uselesskey-pgp-nativeNative OpenPGP key type adapters for uselesskey fixtures.90MIT OR Apache-2.0
secure-cryptUltra secure encryption/decryption tool using Rust + libsodium with zero secret leakage.89MIT
pkloong-kcapi-sysLow-level Rust FFI bindings and build integration for libkcapi.89BSD-2-Clause OR GPL-2.0-only
p3ak-vault-coreCore library for P3AK vault — encrypted portable AI knowledge store with hybrid BM25 + vector search89MIT
claw401-coreCore verification engine for the Claw401 X401 wallet authentication protocol89Apache-2.0
tibet-cortex-audittibet-cortex-audit: blackbox-met-window audit trails with tibet-vault integration89MIT OR Apache-2.0
uselesskey-jose-openidJOSE/OpenID focused conversion helpers for uselesskey fixtures.89MIT OR Apache-2.0
amatersAmateRS - Fully Homomorphic Encrypted Distributed Database with Zero Trust Architecture89Apache-2.0
owidSimple cryptographically auditable identifiers and processors implemented in Rust.89Apache-2.0
spice-coordinatesCanonical content identifiers (content hashes + git blob ids) and package coordinates (purl) for software artifacts — the Rust…89Apache-2.0
cyber-hemeraHemera — Poseidon2 hash over Goldilocks field88non-standard
zsign-rsCross-platform iOS code signing library - Rust port of zsign88MIT
cryptokit-rsSafe Rust bindings for Apple's CryptoKit framework — hashing, AEAD, AES-CBC compatibility, signatures, key agreement, and Secure…88MIT OR Apache-2.0
concryptorA multi-threaded AEAD encryption engine88AGPL-3.0-or-later
fernlink-coreCore cryptographic primitives and protocol implementation for the Fernlink mesh verification network88Apache-2.0
rightkit-licenseRight Suite license enforcement primitive — offline verification of server-signed Ed25519 entitlement tokens. The Rust (security)…88MIT OR Apache-2.0
protocol-7h37h3 Protocol — Rust SDK. Deterministic, signed, replay-safe AI-to-AI messaging with TypeScript/Python parity. Wire version…88MIT
cesr-streamCESR stream framing: counters, groups, cold-start detection, and text/binary stream parsing. Under active development.87MIT OR Apache-2.0
bcxBifrost Causal Exchange protocol primitives for signed causal meaning and proof composition.87EUPL-1.2
pkix-chain-simpleStrict, opinionated X.509 chain verifier for the common happy-path case87Apache-2.0 OR MIT
entvizVisualize high-entropy values as comparable SVG diagrams (entviz, spec v15).87Apache-2.0
phantom-protocolPost-quantum-secure L4/L6 universal transport framework — hybrid X25519+ML-KEM-768 / Ed25519+ML-DSA-65, multi-path, UniFFI…86Apache-2.0
sifredb-deriveDerive macros for sifredb86Apache-2.0 OR MIT
sifredb-cliCLI tool for SifreDB key management86Apache-2.0 OR MIT
coldstar-validationInput validation for device paths, addresses, passwords, and amounts86MIT
coldstar-transactionTransaction building, signing, and serialization for Coldstar86MIT
asherah-cobhanCobhan-compatible C ABI for Asherah, drop-in replacement for the Go asherah-cobhan library.86Apache-2.0
cortex-auditTIBET Cortex Audit: blackbox-met-window audit trails with tibet-vault integration86MIT OR Apache-2.0
authiaHigh-performance JWT verification library for Ed25519 using WebAssembly86MIT
hardware-keystoreCross-platform hardware-backed device keystore abstraction with attestation86MIT
nfe-xmlXML handling for NF-e documents86MIT
neco-vaultminimum dependency memory-only signing vault built on neco-secp86MIT
cyphrCyphr self-sovereign identity protocol86non-standard
rustls-pem-rootsLoad PEM-encoded CA certificates from files and directories into a rustls RootCertStore, with DER-hash deduplication.85MIT
sifredb-key-fileFile-based key provider for SifreDB85Apache-2.0 OR MIT
metaunmaskExtract and decrypt MetaMask and Phantom wallet vaults from browser extension storage85MIT
tibet-cortex-storetibet-cortex-store: JIS-gated vector storage with TBZ envelopes85MIT OR Apache-2.0
tidecoin-chacha20-poly1305The ChaCha20 stream cipher and Poly1305 MAC based AEAD.85CC0-1.0
compio-rustlsimpl Async for rustls85MIT OR Apache-2.0
no-std-svm-merkle-treeA no-std svm-compatible merkle tree library84MIT
rustls-sni-resolverSNI-keyed certificate map implementing rustls::ResolvesServerCert, designed for hot-reload via ArcSwap.84MIT
seednautA command-line utility for inspecting, verifying, and extracting Seedvault Android backups84MIT OR Apache-2.0
zlicenserClient library for the zlicenser hardware-bound software licensing framework.84Apache-2.0
devboy-vault-cryptoEncrypted local vault primitives for devboy-tools — XChaCha20-Poly1305 + Argon2id with envelope encryption (ADR-023).84Apache-2.0
quichashHigh-performance cryptographic hash utility with SIMD optimization83MIT OR Apache-2.0
hydra-syncLight-weight zero-copy E2E Single Producer Multiple Consumer network cluster library.83MIT
vanity-addressFast, local multi-chain vanity address generator83MIT
hsh-kmsPepper / KMS integration for the hsh crate: HMAC-SHA-256 pepper application with versioned keys and pluggable KMS backends.83MIT OR Apache-2.0
itylos-cliSovereign ephemeral messaging CLI with local AES-256-GCM encryption and burn-on-read semantics.83MIT
edgesentry-auditTamper-evident immutable audit trace: signing, verification, ingestion and CLI83MIT OR Apache-2.0
spotlibClient for the Spot secure messaging network: end-to-end encrypted messaging over websocket connections83MIT
cortex-storeTIBET Cortex Store: JIS-gated vector storage with TBZ envelopes83MIT OR Apache-2.0
dilithia-sdk-rustRust client for the Dilithia blockchain — RPC, contracts, deploy, signing, shielded pool83MIT OR Apache-2.0
xark-macrosProc macros for xark circuits (the `#[circuit]` attribute).83MIT
simon-speckProduction-ready implementation for SIMON and SPECK block ciphers.83MIT
quipu-coreEmbedded, OS-independent audit log storage engine: typed entity registries, field encryption, retention, and time-travel queries.83Apache-2.0
oxicrypto-benchCriterion benchmarks comparing OxiCrypto against ring and aws-lc-rs (dev-only)83Apache-2.0
xtax-encryptionTrait-only encryption provider interface — used by xtax-blob-storage and other crates.82MIT OR Apache-2.0
genshi-emit-solanaAnchor program codegen for genshi PLONK-KZG verifiers on Solana (per-VK, zero runtime dependency)82MIT OR Apache-2.0
verified-anchor-macrosProof-producing proc-macros for verified-anchor (#[derive(VerifiedAccounts)], #[derive(AccountData)], #[account]).82CC-BY-NC-ND-4.0
kanoniv-agent-authSudo for AI agents - cryptographic delegation, Ed25519 identity, and signed audit trails82MIT
envcipherEncipher .env files to make accidental leaks harmless82MIT
zkvZero-knowledge encrypted personal vault: a local-first, end-to-end encrypted TUI manager for passwords, notes, and cards.82MIT
hctr2-rsHCTR2 and HCTR3 length-preserving encryption with format-preserving variants82MIT OR Apache-2.0
deon_protocolA secure, hybrid (BLE/Wi-Fi) file transfer protocol with SPAKE2 authentication and XChaCha20-Poly1305 encryption.81Apache-2.0
fortress-dbFortress - Enterprise Security. A highly customizable, secure database system with multi-layer encryption.81non-standard
dcp-aiRust SDK for the Digital Citizenship Protocol for AI Agents81Apache-2.0
chaincraftA high-performance Rust-based platform for blockchain education and prototyping81MIT
ssign-coreThe Certum SimplySign cloud-signing pipeline behind ssign: OAuth login, card/cert fetch, remote signature, and local…81MIT
hiero-streamsParse and cryptographically verify Hedera consensus streams: v6 record files and HIP-1056 block streams, including in-band TSS…81Apache-2.0
cheetah-curveCheetah elliptic curve (sextic extension of the Goldilocks field) + Tip5 hash + Goldilocks field arithmetic — the cryptographic…80MIT OR Apache-2.0
warpin-integrityStrict RFC 8785 canonical JSON and SHA-256 integrity digests80MIT
kcipher2An implementation of the KCipher-2 stream cipher80Apache-2.0 OR MIT
ayatoriGraph-based framework for distributed cryptographic protocols80MIT
ckb-opt-blake2bBLAKE2b implementation for CKB-VM with Rust bindings80MIT
otlsp-serverOblivious TLS proxy server79MIT OR Apache-2.0
rust-bottleRust implementation of Bottle protocol - layered message containers with encryption and signatures79MIT
rust-config-secretsA library for encrypting and decrypting secrets within configuration files.79MIT
canon-mcpCanon Protocol — cryptographic audit trails for AI-assisted development79MIT
fileluya-ledgerQuantum-resistant token system for KeyLeLuYa — balances as propagator cells, transfers as Forge gears, sigchain as ledger79MIT
export-sui-verifier-coreLoad Groth16 artifacts from snarkjs JSON or Arkworks bundles and generate Sui Move verifier packages.78MIT
dreamwell-ufbxSafe Rust bindings to ufbx — FBX import for Dreamwell78Apache-2.0
hiero-did-hcsHedera Consensus Service client and topic helpers for did:hedera78Apache-2.0
qfall-schemesCollection of prototype implementations of lattice-based cryptography78MPL-2.0
s-udpHigh-performance, adaptive, and cryptographically secure reliable UDP protocol with high-throughput windowing.78MIT
rasypt-lite-deriveProcedural macro for deriving decryption handlers with field-level Jasypt support78MIT OR Apache-2.0
trove-corekdbx-compatible vault library: I/O, crypto, sidecars78MIT OR Apache-2.0
cortexai-encryptionAt-rest encryption for sensitive data in Cortex: AES-GCM and ChaCha20-Poly130577Apache-2.0
openinternetcryptographykeysA Simple Standard Cryptography-Suite For Web 3.20, offering cryptographic abstraction (Generic Signing/Verifying, Generic…77Apache-2.0 OR MIT
envlockEncrypt, decrypt, and inject .env files with age encryption77MIT OR Apache-2.0
foxchain-idMulti-chain blockchain address identification library77GPL-3.0
golden-dkgGolden DKG + threshold BLS signatures + vetKeys IBE + Simplex BFT consensus77MIT OR Apache-2.0
worker_jwtJWT generation for wasm runtimes (Cloudflare Workers, Deno, browsers) backed by the Web Crypto API77MIT
f8s-coreProtocol, crypto, invites, envelopes, and quarantine mailbox state for f8s.77MIT
parley-mdReference CLI for the Parley agent-to-agent messaging protocol. Installs the `parley` binary.77MIT OR Apache-2.0
extrolibExtro protocol library — WebRTC-only client traffic, key-server gossip, DHTX social-graph discovery, bidirectional pricing, RGB21…77MIT
tagotip-secureTagoTiP/S crypto envelope — AEAD encryption for TagoTiP frames76Apache-2.0
tana-authAuthentication and JWT utilities for Tana with Ed25519 signatures76MIT OR Apache-2.0
uploadMinimal high-performance S3 client with content-addressable deduplication / 极简高性能内容寻址去重S3客户端76MulanPSL-2.0
polynomials-eccA library for operating on polynomials over the BLS12-38176MIT
soma-audit-corePure zero-IO core types, chain math, and crypto for soma-audit.76Apache-2.0
phantom-secrets-vaultSecret vault backends for Phantom Secrets — OS keychain and encrypted file76MIT
signed-cryptoA Rust library for encrypted payloads with built-in integrity verification76MIT
rust-randomwowRust interface to the RandomWOW hash function (Wownero)75MIT
hiero-did-resolverMirror-node DID resolution and document reconstruction for did:hedera75Apache-2.0
hashjunkieFast multi-algorithm hashing library with file-sharing and cloud hash support75MIT
zvault-serverZVault HTTP server — REST API, web dashboard, and system routes for the AI-native secrets manager75MIT OR Apache-2.0
canonical-mtCanonical Mutable Tree — the single-algorithm mutable tree over the Merkle Spine75non-standard
armoireA cross-platform library for working with desktop secrets.75MIT
uglyHigh-performance Solana vanity address generator with encrypted storage74MIT
opaque-scannerOpaque Cash stealth-address (DKSAP) scanner: EIP-5564 view-tag scanning, PSR V2 reputation attestations, and a chain-neutral…74Apache-2.0
canonical-mlCML — the single-algorithm canonical append log over the Merkle Spine: frontier carry, root folds, the append-only consistency…74non-standard
starlab-coreCiphersuite-generic FROST threshold-signature core: DKG, signing, and a unified multi-curve (ed25519 + secp256k1) keystore.74MIT OR Apache-2.0
vanitygenBitcoin vanity address generator — find your perfect address74MIT
krb5-gssPure Rust Kerberos protocol engine and krb5 GSS-API mechanism (initiator), no FFI74Apache-2.0 OR MIT
simple-ringEducational implementation of polynomial rings, NTT, and coefficient sampling for lattice-based cryptography73CECILL-B OR Apache-2.0
magic_cap_cliMagic Cap is a user-friendly tool for encrypted files.73AGPL-3.0-or-later
dreamwell-intelligenceQuantumGPT (The Loom) — Quantum Information Pretrained Transformer. Density matrix attention with intrinsic thermodynamic loss,…73Apache-2.0
solana-tx-parserSolana DEX transaction parser - parse trades, liquidity, and meme events73MIT
nebula-vrfBLS12-381 VRF core for Soroban: local randomness with optional on-chain verification73MIT
gutdWireGuard traffic obfuscation library — QUIC-like encapsulation, cross-platform userspace proxy, optional eBPF fast path on Linux73MIT
rsmp4decryptRust bindings and a CLI for Bento4 mp4decrypt73MIT OR Apache-2.0
vm-catProvable stack-machine VM built on machine-cat73MIT
megacryptA robust cryptographic session engine with domain separation and tamper detection.73MIT OR Apache-2.0
acme-providerDnsProvider trait for ACME DNS-01 challenges, with optional provider implementations behind feature flags.72MIT
edgesentry-rsTamper-evident immutable audit trace: signing, verification, ingestion and CLI72MIT OR Apache-2.0
dreamwell-projectsDreamwell project templates — starter kits for QTTPS applications72Apache-2.0
zimhideZim Steganography Toolkit - WAV steganography CLI for embedding and extracting encrypted text/audio72MIT
enveilDEPRECATED: this crate has been renamed to `enject`. Please update your dependency.72MIT
suit_validatorno_std-friendly Rust crate for decoding and verifying SUIT Manifest.72MIT
wycheproof-ng-ecdsaECDSA Wycheproof test vectors for Wycheproof NG72Apache-2.0
keychainbreaker-cliCommand-line tool to extract credentials from macOS Keychain files.72Apache-2.0
revenant-sign-tlsFrom-scratch TLS 1.0 + RC4-MD5 client for legacy CoSign appliances72Apache-2.0
wycheproof-ng-mlkemML-KEM Wycheproof test vectors for Wycheproof NG72Apache-2.0
qorechain-pqcQoreChain post-quantum cryptography — FIPS-204 ML-DSA, FIPS-203 ML-KEM, FIPS-202 SHAKE-256, with blockchain helpers.…72Apache-2.0
wycheproof-ng-mldsaML-DSA Wycheproof test vectors for Wycheproof NG72Apache-2.0
x25519-nostdPure-Rust X25519 (Curve25519) ECDH implementation for no_std/bare-metal targets (avoids LLVM SIMD issues)71Apache-2.0
bliss-embeddedEmbeddable Bliss integration for EustressEngine and other game engines71MIT OR Apache-2.0
weaver-coreWeaver core types — IDs, events, tags, math, errors for the Dreamwell scene weaving subsystem.71Apache-2.0
rust-threat-detectorAdvanced memory-safe SIEM threat detection with ML-based scoring, automated incident response, and threat hunting capabilities71MIT
polar-bear-hft-cryptoCryptographic signing layer for high-frequency trading: ECDSA/Ed25519 forward-engineering + 7-exchange API authentication71MIT OR Apache-2.0
xark-irxark's intermediate representation: R1CS constraints, linear combinations, and the primitive/hint program.71MIT
wycheproof-ng-symmetricSymmetric cipher, key wrap, and MAC Wycheproof test vectors for Wycheproof NG71Apache-2.0
wycheproof-ng-aeadAEAD and DAEAD Wycheproof test vectors for Wycheproof NG71Apache-2.0
klef-coreCore library for klef: storage backends, secret index, env-file parsing.71MIT
wycheproof-ng-blsBLS Wycheproof test vectors for Wycheproof NG71Apache-2.0
wycheproof-ng-rsa-signatureRSA signature Wycheproof test vectors for Wycheproof NG71Apache-2.0
astarte-device-tlsTLS configuration for the Astarte device71Apache-2.0
kiss_chat_coreProtocol core of kiss_chat: iroh transport, hybrid post-quantum handshake, session encryption, identity, and contacts.71GPL-3.0-or-later
wycheproof-ng-dsaDSA Wycheproof test vectors for Wycheproof NG71Apache-2.0
wycheproof-ng-rsa-encryptionRSA encryption Wycheproof test vectors for Wycheproof NG71Apache-2.0
wycheproof-ng-kdf-joseKDF, password-based, JOSE, and primality Wycheproof test vectors for Wycheproof NG71Apache-2.0