Fork of https://filippo.io/edwards25519 with unsafe faster operations. https://filippo.io/edwards25519
Go to file
2022-07-26 10:28:42 -04:00
.github/workflows edwards25519: sync with upstream 2022-05-25 01:39:14 +02:00
field edwards25519: sync with upstream 2022-05-25 01:39:14 +02:00
doc.go edwards25519: sync with upstream 2022-05-25 01:39:14 +02:00
edwards25519.go edwards25519: sync with upstream 2022-05-25 01:39:14 +02:00
edwards25519_test.go edwards25519: extend benchmarks 2022-05-24 17:21:59 +02:00
extra.go extra: explain the absence of SetMontgomeryBytes (#30) 2022-07-26 10:28:42 -04:00
extra_test.go edwards25519: make Scalar and field.Element setters return errors 2021-06-04 16:57:44 +02:00
go.mod all: sync with landed standard library upstream 2021-05-26 18:09:02 +02:00
LICENSE all: flatten the package and make FieldElement opaque 2020-09-28 14:18:44 +02:00
README.md edwards25519: sync with upstream 2022-05-25 01:39:14 +02:00
scalar.go edwards25519: sync with upstream 2022-05-25 01:39:14 +02:00
scalar_alias_test.go all: sync with landed standard library upstream 2021-05-26 18:09:02 +02:00
scalar_test.go edwards25519: make Scalar and field.Element setters return errors 2021-06-04 16:57:44 +02:00
scalarmult.go all: sync with landed standard library upstream 2021-05-26 18:09:02 +02:00
scalarmult_test.go all: rename type *testing.B variable to 'b' 2022-05-24 17:21:59 +02:00
tables.go edwards25519: sync with upstream 2022-05-25 01:39:14 +02:00
tables_test.go all: sync with landed standard library upstream 2021-05-26 18:09:02 +02:00

filippo.io/edwards25519

import "filippo.io/edwards25519"

This library implements the edwards25519 elliptic curve, exposing the necessary APIs to build a wide array of higher-level primitives. Read the docs at pkg.go.dev/filippo.io/edwards25519.

The code is originally derived from Adam Langley's internal implementation in the Go standard library, and includes George Tankersley's performance improvements. It was then further developed by Henry de Valence for use in ristretto255, and was finally merged back into the Go standard library as of Go 1.17. It now tracks the upstream codebase and extends it with additional functionality.

Most users don't need this package, and should instead use crypto/ed25519 for signatures, golang.org/x/crypto/curve25519 for Diffie-Hellman, or github.com/gtank/ristretto255 for prime order group logic. However, for anyone currently using a fork of crypto/internal/edwards25519/crypto/ed25519/internal/edwards25519 or github.com/agl/edwards25519, this package should be a safer, faster, and more powerful alternative.

Since this package is meant to curb proliferation of edwards25519 implementations in the Go ecosystem, it welcomes requests for new APIs or reviewable performance improvements.