CATEGORY
Cryptography 6,603 crates
Data as of 2026-07-25 (crates.io database dump, timestamp 2026-07-25T02:00:36Z). Source: crates.io · db-dump.tar.gz · methodology & corrections.
tohuDevice identity for the TOKEN/FGTW app stack: per-platform device oracle + frozen v0 key derivation (handle → seed → vault…50MIT OR Apache-2.0
herosal-vaultSAL Vault - Secure key management and cryptographic operations50Apache-2.0
hce-coreLossless, pronounceable, encrypted codec for any identifier — reversible, format-preserving, human-readable50MIT
nomad-protocolNOMAD Protocol - Network-Optimized Mobile Application Datagram. A secure UDP-based state synchronization protocol.50MIT OR Apache-2.0
silent-sparrowA minimal, scheduled, cryptographically signed status beacon.50MPL-2.0
ark-bn254-extExtensions for the BN254 pairing-friendly elliptic curve50MIT/Apache-2.0
dnscryptA pure-Rust DNSCrypt v2 client library — sync and async support.50MIT OR Apache-2.0
gibber-linkGIBBER-LINK™ — link-layer substrate for ambient zero-trust handshakes within the BCCCOP™ protocol family. Top-level landing crate.50Apache-2.0
tinnitusTINNITUS™ — persistent ultrasonic (15–22 kHz) micro-attestation sub-channel of GIBBER-LINK™ within the BCCCOP™ protocol family.…50Apache-2.0
cleitonqPost-quantum authenticated command & control for embedded and autonomous systems50MIT OR Apache-2.0
fodidReader for the 51Did (51Degrees Identifier) value returned by the 51Degrees cloud service. Parses the OWID envelope and unpacks…49EUPL-1.2
zafuminimalist zcash light wallet with ligerito proofs - zen meditation cushion49MIT
styrene-rnsRust RNS protocol core — identity, destinations, links, cryptographic primitives, and transport49MIT
hiero-did-registrarHigh-level DID creation flow for did:hedera on Hedera49Apache-2.0
bitcoin_hash_toolkitA toolkit for Bitcoin hashing functions49MIT
fynlinkOfficial Rust SDK for Fynlink49MIT
selloDEPRECATED: Renamed to txgate. This crate re-exports txgate for backward compatibility.49MIT OR Apache-2.0
mtls-actixActix-web middleware for mTLS authentication with IP whitelisting49GPL-3.0
saorsa-attestation-guestSP1 zkVM guest program for Saorsa Entangled Attestation proofs49MIT OR Apache-2.0
evault-store-memoryIn-memory backends for evault (test fixtures).49MIT
korg-ledgerkorg-ledger@v1 — the tamper-evident hash-chain spec implementation (canonicalize, chain_hash, verify_chain, verify_dag).…49MIT OR Apache-2.0
stochastic-routing-extendedSRX (Stochastic Routing eXtended) — a next-generation VPN protocol with stochastic routing, DPI evasion, post-quantum…49Apache-2.0
otp-cipherOne-Time Pad encryption library49MIT
no-way-jose-aes-cbc-hsAES-CBC + HMAC-SHA JWE content encryption for no-way-jose48Apache-2.0
nula-gossipNIP-65 / NIP-17 multi-relay routing graph: outbox / inbox / hints / most-received with optional background refresher.48MIT OR Apache-2.0
no-way-jose-aes-kwAES Key Wrap (A128KW, A192KW, A256KW) JWE key management for no-way-jose48Apache-2.0
chains-sdkUnified, secure multi-chain signing library for ECDSA, EdDSA, BLS, and Schnorr48MIT OR Apache-2.0
hiero-did-methodParser and validators for did:hedera identifiers48Apache-2.0
ifd-jcecardPC/SC IFD Handler for jcecard virtual OpenPGP and PIV smart card48BSD-2-Clause
asherah-ffiC ABI (Cobhan buffer format) for the Asherah encryption library, used by .NET, Ruby, and Go bindings.48Apache-2.0
gsocket-tls-srpTLS 1.2 with SRP key exchange (RFC 5054) and AES-256-CBC, wire-compatible with C gsocket48BSD-2-Clause
avila-primitivesBig integer primitives (U256, U512, U1024, U2048, U4096) - Built on avila-nucleus48MIT OR Apache-2.0
aethelgard-avlA Sovereign, NASA-grade AVL Tree with generational arena storage and BLAKE3 Merkle-style integrity verification.48MIT OR Apache-2.0
lwbcCompact implementations of small block ciphers (SPECK, SIMON, SIMECK)48MIT
tsumiki-cliCommand-line tool for X.509 certificate inspection and PKCS handling48MIT
evault-runnerProcess runner with injected environment for evault.48MIT
evault-scanner-regexRegex-based source-code scanner for environment-variable usage.48MIT
evault-tuiTerminal user interface for evault.48MIT
kohaku-coreShared types, traits, and errors for the community Kohaku Rust SDK48MIT
evault-store-keyringOS keyring-backed secret store for evault.48MIT
lux-precompileLux Network — FFI bindings to libluxprecompile (all Lux EVM precompiles via Go shared library)48non-standard
wycheproof-ngUmbrella re-exports for the Wycheproof NG test vector crates48Apache-2.0
bitcoin-hmac-sha512Low-level, FFI-friendly HMAC-SHA-512 implementation for Bitcoin-style cryptographic workflows, using raw pointers and fixed-size…47MIT
pqc-nostdPQC no_std no_alloc Kyber Dilithium embedded 100% Rust47MIT
no-way-jose-aes-gcm-kwAES-GCM Key Wrap (A128GCMKW, A192GCMKW, A256GCMKW) JWE key management for no-way-jose47Apache-2.0
no-way-jose-aes-gcmAES-GCM JWE content encryption (A128GCM, A192GCM, A256GCM) for no-way-jose47Apache-2.0
no-way-jose-ecdh-esECDH-ES JWE key agreement (P-256, P-384, X25519) for no-way-jose47Apache-2.0
zap1-verifyStandalone Merkle proof verifier for the ZAP1 attestation protocol on Zcash47MIT
egcodeno_std async streaming encrypt/decrypt tooling for gcode.47MIT
pngyouA simple, high-performance CLI tool to hide secret messages in a PNG file using steganography.47MIT OR Apache-2.0
rustywallet-cliCommand-line tool for cryptocurrency wallet operations47MIT
inspireInsPIRe: Communication-Efficient PIR with Server-side Preprocessing47MIT OR Apache-2.0
onyx-sdkOnyx SDK - Privacy-preserving stealth addresses for Solana47MIT OR Apache-2.0
blake3_cipherFast and secure symmetric encryption using BLAKE3 XOF stream / 基于 BLAKE3 XOF 流的高速安全对称加密47MulanPSL-2.0
evault-store-sqlcipherSQLCipher-encrypted metadata store for evault.47MIT
evault-materializerMaterializes .env files from an evault manifest.47MIT
vaid-mintVAID reference mint (Rust): mint a root VAID and mint attenuated child VAIDs (scope/capability-contained delegation) over the…47Apache-2.0
memprotectEncryption-at-rest for secrets in RAM with ephemeral key derivation46MIT
ubl-wasmUBL Chip execution engine for WebAssembly - BLAKE3 + JSON Atomic + Decision CID46MIT OR Apache-2.0
no-way-jose-eddsaEdDSA (Ed25519) JWS algorithm for no-way-jose46Apache-2.0
no-way-jose-graviolaGraviola crypto backend for no-way-jose (HMAC, ECDSA, EdDSA, RSA, AES-GCM)46Apache-2.0
no-way-jose-hmacHMAC-SHA JWS algorithms (HS256, HS384, HS512) for no-way-jose46Apache-2.0
varsigVarsig signature metadata46Apache-2.0
pq-key-encoderPost-quantum key encoding (DER, PEM, JWK) for ML-KEM, ML-DSA, SLH-DSA46MIT
h33-cliH33 terminal companion — sign up, mint agent tokens, run the MCP server, audit, detect classical crypto, wrap with substrate, run…46LicenseRef-Proprietary
monerochan-sdkMonero-Chan, The Open-Source Privacy Platform (OSPP)46MIT OR Apache-2.0
aes-eme2-blake3Maybe fast, deterministic AEAD construction using EME2 and BLAKE3 SIV46MIT OR Apache-2.0
find_hashA high-performance, offline hash type identification tool.46GPL-3.0
cutilA complete internal PKI toolkit for Rust46MIT
spiffe-rsRust port of spiffe-go with SPIFFE IDs, bundles, SVIDs, Workload API client, federation helpers, and rustls-based SPIFFE TLS…46Apache-2.0
evault-manifestParser and serializer for the evault.toml project manifest.46MIT
tinyzkpRust client for the TinyZKP proving API — generate and verify ZK-STARK proofs46MIT
openhawk-vaultAES-256-GCM encrypted secrets vault for OpenHawk agents46MIT
krusty-kms-wallet-apiShared wallet execution and transaction tracking API for krusty-kms46MIT OR Apache-2.0
shahaHash database builder and reverse lookup tool45MIT
no-way-jose-ecdsaECDSA JWS algorithms (ES256, ES384, ES512) for no-way-jose45Apache-2.0
kyber-nzA pure Rust, secure and robust implementation of FIPS 203 (ML-KEM)45MIT OR Apache-2.0
no-way-jose-claimsJWT registered claims and composable validators for no-way-jose45Apache-2.0
no-way-jose-pbes2PBES2 password-based JWE key management for no-way-jose45Apache-2.0
no-way-jose-rsaRSA JWS/JWE algorithms (RS256, PS256, RSA-OAEP, etc.) for no-way-jose45Apache-2.0
no-way-jose-aws-lcaws-lc-rs crypto backend for no-way-jose (HMAC, ECDSA, EdDSA, RSA, AES-GCM)45Apache-2.0
p3q-verifierP3Q strict-PQ STARK+FRI verifier — panic-free, audit-gated.45MIT OR Apache-2.0
safekeepA flexible backup library with trait-based file handling, compression, and encryption45MIT
osstone-step schnorr threshold identification with proactive resharing45MIT OR Apache-2.0
krypteia-silentopsSide-channel countermeasure toolkit: constant-time primitives, dudect-style timing leakage verifier, and shared SCA helpers for…45Apache-2.0
backbone-sphincsSPHINCS+ (FIPS 205) implementation: Stateless Hash-Based Digital Signature Standard45Apache-2.0
device-signerSecure device cryptographic key generation, storage, and identity for hardware devices. Derives deterministic secp256k1 keys from…45MIT
xark-hashShared Hash and Digest types for xark hash gadgets.45MIT
wireguard-sans-ioA sans-I/O, no_std, zero-allocation, zero-dependency, panic-free WireGuard protocol implementation45MIT OR Apache-2.0
polygraphiaA comprehensive library for classical and modern cryptographic algorithms.44Apache-2.0
ashcoreASH (Application Security Hash) — RFC 8785 compliant request integrity verification with anti-replay protection44Apache-2.0
dynamicfeed-verifyVerify Dynamic Feed DF-VERIFY/1 signatures and signing-key lifecycle policy.44MIT
hdpkiHierarchical deterministic key derivation for OpenSSH and X.50944Apache-2.0
firecloud-cliCommand-line interface for FireCloud P2P messaging and file sharing44MIT OR Apache-2.0
nornir-hashThe ONE shared content-hash primitive for the nordisk constellation — lowercase-hex SHA-256 of bytes / files / streams…44MIT OR Apache-2.0
samaharamScalable heterogeneous zero-knowledge proof aggregation for EVM chains44MIT OR Apache-2.0
qrptonoteAES-256-GCM encrypted terminal notebook. mlock'd cleartext buffer, Argon2id KDF, prctl-hardened.44MIT
alephium-web3A Rust library to interact with the Alephium platform44GPL-3.0-or-later
dyolo-kya-redisRedis-backed RevocationStore and NonceStore for dyolo-kya production deployments44MIT OR Apache-2.0
keepass-rsPlatform-independent KeePass database library supporting KDB and KDBX (3.1, 4.0) file formats44MIT OR MulanPSL-2.0
pwgen-xA feature-rich password generator with pronounceable, secure, passphrase, and PIN modes44Apache-2.0
ja4A fast, pure-rust, no_std implementation of the JA4 TLS client fingerprinting algorithm.44MIT OR Apache-2.0
mlspp-sysMessaging Layer Security system bindings crate in Rust44MIT
neco-p256minimum dependency P-256 ECDSA signing core44MIT
solana-secp256k1-ecdsa-adaptorSign and verify Secp256k1 ECDSA adaptor signatures in SVM44MIT
a1-aiA1 — The cryptographic identity and authorization layer that turns anonymous AI agents into accountable, verifiable entities. One…44MIT OR Apache-2.0
truthlinked-consensusTruthLinked consensus engine — built for the TruthLinked blockchain.44MIT
qnckeNon-commutative key exchange over invertible quaternions modulo a prime44MIT
zeus-walletGenerate Hierarchical Deterministic Wallets (BIP32) from a username and password43MIT OR Apache-2.0
avx-nucleusAtomic-level operations - Foundation of avx cryptography stack43MIT OR Apache-2.0
dig-onionOnion-routing privacy layer for the DIG Node — telescoping circuits (ntor/X25519 + ChaCha20-Poly1305 fixed-size cells) over the…43Apache-2.0 OR MIT
static_encryptCompile-time / static string encryption for Rust43Apache-2.0
synqroSynqro Zero-Trust OTA updater library43MIT OR Apache-2.0
qcryptoolCLI simulator for quantum cryptography protocols.43MIT
uesugi-rsUesugi cipher implementation using the iroha table43MIT
SHARAG256A custom hashing algorithm with complex random number generation based on SHA-256 principles43MIT OR Apache-2.0
backbone-mcelieceClassic McEliece KEM implementation: code-based post-quantum key encapsulation.43Apache-2.0
speck-coreSecure runtime package manager for MMU-less microcontrollers43MIT OR Apache-2.0
krusty-kms-domainPure typed integration contracts for krusty-kms gateways and clients43MIT OR Apache-2.0
timing-oracle-coreCore statistical analysis for timing side-channel detection (no_std)42MPL-2.0
redoubt-blake3Blake3 impl for the redoubt secure memory framework. - placeholder reservation42MIT OR Apache-2.0
naixi-key-encryptorNaixi dedicated cross-language encryption core42MIT
pqxdh-zoaSimple and generic implementation of Signal's PQXDH42AGPL-3.0-only
vpackA no_std Rust library for the universal serialization and verification of VTXOs.42MIT
mere-identityIdentity management for the Mere browser — master Ed25519 keypair, OS-keychain integration, per-protocol identity derivation.42MIT OR Apache-2.0
pq-xwing-kemPlaceholder crate to reserve the name pq-xwing-kem for the upcoming release.42MIT OR Apache-2.0
ark-ed-on-bn254-extExtensions for Twisted Edwards curve defined over the scalar field of the BN254 curve42MIT/Apache-2.0
passidFast, secure, secret-safe CLI for passwords + modern monotonic IDs (UUIDv7, ULID, KSUID, TypeID, NanoID)42MIT
commit-revealSHA256-based commit-reveal scheme for fair P2P verification42MIT OR Apache-2.0
verkle_pqQuantum-resistant Verkle tree library built on quilibrium-verkle with CRYSTALS-Dilithium3 (ML-DSA-65) post-quantum signatures and…42MIT
sealed-senderSealed sender for MLS: sender anonymity via two-stage ECIES42Apache-2.0 OR MIT
xark-bitsBit- and word-level building blocks for xark circuit gadgets.42MIT
asymcryptEncrypt anything with a key that cannot decrypt what it just wrote42MIT
prova-agent-sdkBehavior attestation SDK for AI agents on Solana — wrap any agent action in a cryptographic receipt42Apache-2.0
tydenceRFC 3161 trusted timestamps for git-managed data42MIT OR Apache-2.0
tlpsignA cryptographic protocol for time-locked signature verification with an optional revocation mechanism, requiring no trusted third…42MIT
stoffel-rust-sdkRust SDK for building Stoffel MPC applications42Apache-2.0
use-cryptoCryptographic algorithm and key metadata labels for RustUse41MIT OR Apache-2.0
web3signer-rsA Rust based implementation of ConsenSys Web3Signer.41MIT OR Apache-2.0
skg-cryptoCryptographic provider traits for skelegent41MIT OR Apache-2.0
rustywallet-vanityVanity address generator for Bitcoin and Ethereum41MIT
enclavia-protocolShared wire types and Noise+CBOR responder helpers used by the Enclavia server, router, and SDK.41Apache-2.0 OR MIT
rustywallet-checkerCryptocurrency balance checker for Bitcoin and Ethereum41MIT
memrandEncryption-at-rest for secrets in RAM with ephemeral key derivation41MIT
kya-validatorRust core KYA (Know Your Agent) validator with Python bindings, TEE support, and blockchain integration41MPL-2.0
flowerpasswordFlower Password implementation for Rust - Deterministic password generator using HMAC-MD541MIT
proofgateOfficial ProofGate SDK — blockchain transaction validation and guardrails for AI agents41MIT
xark-curveShared elliptic-curve gadget macros for xark circuits.41MIT
xark-bignumNon-native (foreign-field) limb arithmetic for xark circuit gadgets.41MIT
solana-ed25519-adaptorSign and verify Ed25519 adaptor signatures in SVM41MIT
tokio-aws-lcTokio-friendly TLS server and client built directly on aws-lc-sys, with optional Linux kTLS offload.41BSD-2-Clause
obcrypt-cliCommand-line interface for obcrypt — bytes-in/bytes-out authenticated symmetric encryption (the oboron protocol's cryptographic…41MIT OR Apache-2.0
rkyberMinimalist pure Rust implementation of the Module-Lattice-Based Key-Encapsulation Mechanism Standard
(formerly known as Kyber) as…41Apache-2.0 OR MIT
kookieA secure, local-first, encrypted secret manager for developers40MIT
duke-crypto-cliCLI tool for generating mnemonics and ED25519 key pairs40MIT OR Apache-2.0
tauri-plugin-nostr-syncEncrypted decentralized state sync via Nostr for Tauri apps40Apache-2.0
locker-backendSelf-hosted digital encrypted vault with immutable consent receipts for personal documents.40MIT
tbc-sdkRust SDK for TuringBitChain transactions and contracts40MIT
sp1-ntt-gadgetNTT/INTT Custom Gadget for Dilithium (ML-DSA-65) verification in SP1 zkVM with 60-bit soundness PIC40MIT
pkloong-kcapiHigh-level Rust wrapper for Linux Kernel Crypto API.40BSD-2-Clause OR GPL-2.0-only
voidnoteOfficial Rust SDK for VoidNote — zero-knowledge self-destructing notes40MIT
scalable-rbeA prototype of a scalable Registration-Based Encryption scheme based on standard lattice assumptions40MPL-2.0
novapoly-interpreterA Python-like code prediction language interpreter written in Rust40MIT OR Apache-2.0
intentguard-cpiCPI helpers for IntentGuard — Solana 2FA protocol40MIT
libhardcopyGeneralized library for hardcopy/softcopy command line utilities.40GPL-3.0
roka-totpZero-dependency TOTP / HOTP for Rust — RFC 4226 / 6238, std-only, no unsafe.40Apache-2.0 OR MIT
ark-ed25519-extExtensions for the Ed25519 twisted Edwards curve40MIT/Apache-2.0
attestixAttestix offline credential verifier - verify Ed25519 W3C Verifiable Credentials and UCAN delegation chains issued by the…40Apache-2.0
xorshift128Xorshift128 - Pseudo-Random Number Generator40MIT
xark-backendArkworks Groth16 (BN254) prover/verifier, frontend-agnostic (proves any gr1cs ConstraintSynthesizer).40MIT
unquarantineUnquarantine/decrypt/extract quarantined files from ~40 AV products.40MIT
moss-sdkCryptographic signing for AI agents using ML-DSA-44 (post-quantum)40BSL-1.0
solana-helper-toolsBuild utilities for Solana program development - keypair management, PDA derivation40MIT OR Apache-2.0
ananseAnanse: a WebAssembly-native zero-knowledge virtual machine (zkVM)40MIT OR Apache-2.0
rufield-provenanceRuField MFS provenance receipts: sha256 hashing + ed25519 sign/verify and the §11 fusability invariant40MIT
citadel_treekemPost-quantum TreeKEM continuous group key agreement (CGKA) for zero-trust group messaging40MIT OR Apache-2.0
qscpQuantum Secure Copy — post-quantum file transfer over QSSL. No IPFS, no third party. Transport IS the encryption.39MIT OR Apache-2.0
invoanceOfficial Rust SDK for the Invoance compliance API39MIT
encrypted-file-vaultEFV – Hardened split-vault manager for AES Crypt files (real release at v0.1.0+)39MIT OR Apache-2.0
crypter_project_skA secure file encryption tool using AES-GCM and Argon2.39MIT
fileluyaFiLeLuYa — Secure, encrypted reactive filesystem with hybrid post-quantum cryptography39MIT
ecmqv-rsECMQV key exchange protocol (RFC 5656, draft-sullivan-tls-ecmqv-01) for no_std environments39MIT OR Apache-2.0
finneo_cryptoCross-platform AES-256-GCM encryption with Argon2id key derivation used in Finneo39MIT
bsv-middleware-rsFramework-agnostic BRC-31 authentication and BRC-29 payment middleware for BSV39MIT OR Apache-2.0
redoubt-key-bufferSecure in-memory encrypted storage - placeholder reservation39MIT OR Apache-2.0
crowenvCrowEnv — Smart secrets. Like a crow. 🐦 AES-256-GCM encrypted .cenv replacement for plain .env files39MIT
offline-license-validatorOffline license validation library using Ed25519 signatures39MIT
hsh-cliCommand-line companion for the `hsh` password-hashing library: hash / verify / rehash / inspect / calibrate.39MIT OR Apache-2.0
chieCHIE Protocol - Decentralized, privacy-preserving file sharing with zero-knowledge proofs39Apache-2.0
krowThe krow key derivation function39MIT
redoubt-cryptoCryptographic operations with memory safety - placeholder reservation39MIT OR Apache-2.0
cryptodeStage-based AEAD encryption with ephemeral key isolation39MIT
frost-hubertCommand-line tool for FROST DKG and signing using Hubert as the distributed substrate39BSD-2-Clause-Patent
agent-safe-splSPL (Safe Policy Lisp) evaluator for Agent-Safe capability tokens. 150 lines, zero deps core, microseconds.39MIT
memcryptEncryption-at-rest for secrets in RAM with ephemeral key derivation39MIT
solana-shardmapA generic shard-based mapping utility for Solana programs (Anchor compatible)39MIT
drs-coreDRS cryptographic core — Ed25519, SHA-256, JCS, capability index39Apache-2.0
ark-bw6-767-extExtensions for the BW6-767 pairing-friendly elliptic curve39MIT/Apache-2.0
dpo2u-sdkRust client SDK for DPO2U on-chain compliance programs on Solana — PDA derivers, IDL constants, CPI helpers for…39MIT
p47h-wasm-ossOpen Source WASM bindings for p47h governance engine (Apache-2.0)39Apache-2.0